Package Health

ecphp/ecas

CAS library to communicate with ECAS / EU Login

Latest 4.0.4PackagistPackagist

62%

Total Score

caution

Usable with caveats: nearly two years without a release and no recent commit activity point to slowing maintenance.

Health Score Breakdown

Release historycaution

The package has 26 releases since 2020 with a typical interval of about 31 days, but no releases in the last 12 months and its latest release was nearly two years ago. This materially lowers confidence in ongoing maintenance.

Repo commit activitycaution

There were no commits and no active maintainers in the last three months. Combined with the long registry release gap, this is meaningful evidence of slowed maintenance.

Security policycaution

The repository has no published security policy, leaving vulnerability reporting and response expectations unclear. This is a transparency gap, though not evidence of abandonment by itself.

Workflow auditcaution

All 10 analyzed action references are unpinned, and the audit found a high-confidence medium-severity use of an archived action. No untrusted checkout, script injection, or broad top-level write permissions were found, but the workflow hygiene remains a real concern.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

DependencyLast ReleaseScore
loophp/psr17
Version ^1
—
—
ecphp/cas-lib
Version ^3
—
—
psr/http-client
Version ^1
—
—
dflydev/fig-cookies
Version ^3
—
—
psr/http-client-implementation
Version ^1
—
—

Weekly Downloads

Info

Last Published
1 year ago
Created
6 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform