Package Health

geekghc/flash

Risky to adopt: the package has had no release since April 2017 and its repository has not been updated since then. It remains licensed, documented, tested, and not deprecated, but the long abandonment gap makes compatibility and future maintenance liabilities likely.

Latest 2.8PackagistPackagist

42%

Total Score

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

79

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Release historydanger

The latest release was in April 2017, with zero releases in the last 12 months and a package age of about 9 years. This is strong evidence of abandonment risk despite six releases during its initial 2-day release period.

Repository archivedcaution

The repository is not formally archived, which is a positive counter-signal, but its last push was in April 2017 and does not offset the long period without maintenance.

Security policycaution

The linked repository has no security policy. This is a transparency gap for reporting vulnerabilities, though it is secondary to the much stronger concern that maintenance stopped years ago.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

GeekGhc

Direct Dependencies

DependencyLast ReleaseScore
doctrine/dbal
Version 2.4.*

Weekly Downloads

Info

Last Published
9 years ago
Created
9 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform