Package Health

elcodi/attribute-bundle

The MIT license and clear README make the package easier to assess and use. No commits or releases have appeared for over 10 years, and the linked repository does not mention this package. Treat it as legacy code and avoid new adoption unless compatibility requires it.

Latest v2.0.3PackagistPackagist

38%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

0

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

67

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Release historydanger

The package has had no release in over 10 years despite 101 historical releases, indicating prolonged abandonment rather than a short release pause.

Repo commit activitydanger

The repository recorded zero commits and zero active maintainers in the last three months, consistent with the release history showing no release for over 10 years.

Repo package mentioncaution

The linked repository name does not match the package name and its README does not mention the package, creating uncertainty about whether it is the package's authoritative source.

Repository archivedcaution

The linked repository is not archived, although its last push was over 10 years ago; the lack of archival status does not compensate for the inactive project.

Security policycaution

The repository has no security policy, leaving vulnerability reporting and response expectations undocumented; the package's long inactivity makes this gap more significant.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Marc Morera
Aldo Chiecchia
The Awesome Elcodi Community

Direct Dependencies

DependencyLast ReleaseScore
doctrine/orm
Version ^2.5
symfony/config
Version ^2.7|^3.0
doctrine/common
Version ^2.5
elcodi/attribute
Version ^2.0
elcodi/core-bundle
Version ^2.0

Weekly Downloads

Info

Last Published
10 years ago
Created
12 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform