Package Health

dreamfactory/portal-sandbox

The repository is still connected to an owning organization and includes tests, licensing, and a package-specific README. Its nearly three-year commit gap and absent security policy add maintenance and transparency concerns.

Latest 1.2.11PackagistPackagist

18%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

75

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

64

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Using this package? Scan for Free

Health Score Breakdown

Registry deprecationdanger

Packagist marks the entire package as abandoned, with no replacement named. That is a direct warning against taking a dependency on this release.

Release historydanger

The latest release was nearly 12 years ago, and there have been no releases in the last 12 months. The 38-release history shows prior activity but does not offset this prolonged abandonment.

Repo commit activitycaution

The repository recorded no commits and no active maintainers in the last three months. This reinforces that the package is not being actively maintained.

Repo toolingcaution

Composer build tooling is present, but no repository security-scanning tooling was detected. This is a modest transparency and maintenance weakness, not a standalone adoption blocker.

Security policycaution

The repository has no security policy. That leaves vulnerability reporting and response expectations undocumented, adding a minor transparency concern.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Jerry Ablan

Direct Dependencies

DependencyLast ReleaseScore
kisma/kisma
Version ~0.2
—
—
dreamfactory/oasys
Version @stable
—
—
dreamfactory/package-installer
Version dev-develop as dev-master
—
—
dreamfactory/lib-php-common-platform
Version dev-develop as dev-master
—
—

Weekly Downloads

Info

Last Published
11 years ago
Created
12 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform