Package Health

gaya/typo3-coder

The package includes tests, a substantial README, and an organization-owned repository. Its license texts disagree, and the project has no security policy; the workflow is clean but both actions are unpinned.

Latest 14.1.0PackagistPackagist

65%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

67

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

81

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Licensecaution

The manifest declares GPL-2.0-or-later and the artifact license file is detected as LGPL-3.0, so the package is licensed but its license metadata is inconsistent and warrants verification.

Release historycaution

The package is brand new, with 8 releases appearing within less than an hour and no meaningful long-term maintenance history yet. This limits confidence but does not by itself indicate abandonment.

Repo bus factorcaution

All recent commits come from one contributor. Organization ownership provides some handoff capacity, but no second active contributor is shown to demonstrate that resilience.

Repo commit activitycaution

Only 2 commits from 1 active maintainer were recorded over the last 3 months. The very new repository explains some of this, but it leaves maintenance capacity unproven.

Repo toolingcaution

The project uses Composer, but no security-scanning tool was detected. For a new package that runs development tooling, this is a modest transparency and maintenance gap.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

DependencyLast ReleaseScore
symfony/yaml
Version ^7.4 || ^8.0
sebastian/diff
Version ^6.0 || ^7.0 || ^8.0
typo3/cms-core
Version ^14.0
overtrue/phplint
Version ^9.7
a9f/typo3-fractor
Version ^0.5

Weekly Downloads

Info

Last Published
4 hours ago
Created
1 year ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform