Package Health

friartuck6000/doctrine-wp-bundle

The MIT license, focused dependency set, and matching repository make the package straightforward to inspect. Its tiny codebase has no tests or security tooling, adding maintenance uncertainty.

Latest v0.2.0PackagistPackagist

38%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

0

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

57

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

83

Health Score Breakdown

Release historydanger

The package has had no release in nearly 10 years: its latest release was June 6, 2016, with zero releases in the last 12 months. This is strong evidence of abandonment despite the short early release interval.

Repo commit activitydanger

There were zero commits and zero active maintainers in the last 3 months, consistent with the repository having been inactive since June 2016.

Package scaffoldingcaution

The package includes a README and changelog, which help consumers understand it, but it has no tests in the artifact or repository. The missing tests are a modest maintenance gap, not an artifact-packaging failure.

Repo toolingcaution

Composer is used for builds, but no security scanning tools are present. The missing scanning is a hygiene gap that adds little confidence for an otherwise inactive project.

Repository archivedcaution

The repository is not marked archived, but it was last pushed on June 6, 2016; the unarchived status does not compensate for the prolonged inactivity shown by the release and commit signals.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Kyle Tucker

Direct Dependencies

DependencyLast ReleaseScore
friartuck6000/phpass
Version ^0.3
—
—
rikbruil/doctrine-specification
Version ^1.0
—
—

Weekly Downloads

Info

Last Published
10 years ago
Created
10 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform