Package Health

drupalcz/csgov-project

The installer is very small and clearly tied to its Drupalcz organization, with a valid license and stable version. Its source offers little evidence of ongoing care, so future compatibility remains a significant concern.

Latest 2.0.0PackagistPackagist

45%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

71

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Health Score Breakdown

Release historydanger

Only two releases exist, with none in the last 12 months; the latest release was about 2 years and 6 months ago. This strongly suggests the package may no longer track its ecosystem.

Repo commit activitydanger

The repository recorded 0 commits and 0 active maintainers in the last 3 months, providing no recent evidence of maintenance capacity.

Package scaffoldingcaution

The package includes a README, which helps consumers, but the README describes the project as a work in progress and the package has no tests or changelog. Missing tests and changelog are normal for a Composer installer, but the unfinished status remains a concern.

Repo popularitycaution

The repository has 0 stars, 1 fork, and 1 watcher, indicating limited visible adoption. This is supporting evidence rather than a verdict, and the organization backing partly offsets the concern.

Security policycaution

The linked repository has no security policy. This is a transparency and response-process gap, though it is less serious than the lack of recent release and commit activity.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

DependencyLast ReleaseScore
drupalcz/csgov
Version 2.x
—
—

Weekly Downloads

Info

Last Published
2 years ago
Created
3 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform