Package Health

edhaase/slim-skeleton

The package has a clear MIT license, a matching source repository, and a usable README. No security policy or automated security scanning leaves maintenance transparency weak.

Latest 2.0.0PackagistPackagist

35%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

0

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

75

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Health Score Breakdown

Release historydanger

The package has had only two releases, both in January 2016, with no releases in the last 12 months. This is strong evidence of abandonment for a web-service scaffold.

Repo commit activitydanger

The repository recorded zero commits and zero active maintainers in the last three months, consistent with the long release gap and leaving no evidence of current maintenance.

Repo toolingcaution

Composer is used for builds, which is appropriate, but no security-scanning tools are configured. That is a maintenance and transparency gap for a web-service foundation.

Security policycaution

The linked repository has no security policy, so consumers have no stated process for reporting or handling security issues. This compounds the lack of recent maintenance evidence.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Edward Haase

Direct Dependencies

DependencyLast ReleaseScore
slim/slim
Version ~3.1
—
—
tedivm/stash
Version ^0.13.1
—
—
monolog/monolog
Version ^1.17
—
—
oscarotero/psr7-middlewares
Version ^3.8
—
—

Weekly Downloads

Info

Last Published
10 years ago
Created
10 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform