Package Health

esyoil-gmbh/esy-dashboard

Risky to adopt: the package has had no release or repository activity since June 2019, and its README documents a different template engine rather than this dashboard. Organizational ownership and a license help, but the long abandonment period makes maintenance and compatibility uncertain.

Latest v1.3PackagistPackagist

35%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

63

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Release historydanger

The latest release was published in June 2019, with no releases in the last 12 months; this indicates the package has been unmaintained for about 7 years and materially raises abandonment risk.

Repo commit activitydanger

The repository recorded 0 commits and 0 active maintainers in the last 3 months, consistent with the multi-year release gap and providing no evidence of ongoing maintenance.

Package scaffoldingcaution

A README is present, but it describes a template engine and instructs users to install a different package, while this release is a dashboard; that makes consumer guidance materially unreliable. Missing tests and changelog files are not counted against the published artifact.

Repo package mentioncaution

The repository name matches the package, which supports ownership, but the README does not mention the package. This weakens transparency about how the published package relates to its source.

Repo toolingcaution

Composer is used for builds, which is appropriate for a PHP package, but no security scanning tooling is present. This is a hygiene gap rather than evidence of maliciousness.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Bennet Gallein

Direct Dependencies

DependencyLast ReleaseScore
twig/twig
Version 1.38.4
—
—
tracy/tracy
Version ^2.4
—
—
mikey179/vfsstream
Version ^1.6
—
—
fig/http-message-util
Version ^1.1
—
—

Weekly Downloads

Info

Last Published
7 years ago
Created
7 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform