Package Health

elcodi/rule

Its MIT licensing, matching repository, and clear package structure support transparency. However, maintenance appears to have stopped over 10 years ago, and the package explicitly redirects issues and support to the main project.

Latest v2.0.3PackagistPackagist

40%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

70

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

83

Health Score Breakdown

Release historydanger

The package has 88 releases, but its latest release was over 10 years ago and it had no releases in the last 12 months. This strongly indicates abandonment despite its historically active cadence.

Repo commit activitydanger

The repository recorded no commits and no active maintainers in the last 3 months, consistent with the last push occurring in 2016. The organization backing does not compensate for the lack of observed maintenance.

Package scaffoldingcaution

The artifact includes a readable README, but it explicitly says the package is read-only and directs issues, questions, and pull requests to the main project. Missing tests and changelog files are normal packaging practice and are not concerns here.

Security policycaution

The linked repository has no security policy, leaving vulnerability reporting and response expectations undocumented. This is a transparency gap, though it is secondary to the long-standing inactivity.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Marc Morera
Aldo Chiecchia
The Awesome Elcodi Community

Direct Dependencies

DependencyLast ReleaseScore
elcodi/core
Version ^2.0
—
—
doctrine/orm
Version ^2.5
—
—
doctrine/common
Version ^2.5
—
—
symfony/expression-language
Version ^2.7|^3.0
—
—

Weekly Downloads

Info

Last Published
10 years ago
Created
12 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform