Package Health

egobude/docker-neos-template

The setup guide and release notes help users get started, and the repository remains unarchived. However, the project has had no release or commit activity for about 9 years, while its declared GPL-3.0+ license conflicts with the repository's detected MIT license.

Latest v0.3PackagistPackagist

38%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

0

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

60

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Health Score Breakdown

Release historydanger

The latest release was published about 9 years ago, with no releases in the last 12 months. This strongly suggests abandonment despite the package having three historical releases.

Repo commit activitydanger

The repository recorded zero commits and zero active maintainers in the last 3 months, consistent with the long release gap and leaving current maintenance unverified.

Licensecaution

The manifest declares GPL-3.0+, while the repository license file is detected as MIT. Although a repository license exists, the mismatch creates genuine legal and provenance uncertainty.

Lifecycle scriptscaution

The package runs post-install and post-update Composer scripts. These are relevant supply-chain exposure during installation and should be inspected before adoption, though their presence alone does not show harmful behavior.

Repo toolingcaution

Composer is used for builds, but no security scanning tools are reported. This is a maintenance and assurance gap, though it is less significant than the prolonged inactivity.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

DependencyLast ReleaseScore
neos/seo
Version ~2.0
neos/neos
Version ~3.0.0
neos/setup
Version ~4.0
neos/nodetypes
Version ~3.0.0
neos/site-kickstarter
Version ~3.0.0

Weekly Downloads

Info

Last Published
9 years ago
Created
9 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform