Package Health

gitscrum-community-edition/laravel-gitscrum

The repository is clearly identified and backed by an organization, with matching package references, a license, tests, documentation, and a security policy. Its release and recent development activity stopped years ago, so future compatibility and maintenance are concerns.

Latest 0.13.0PackagistPackagist

57%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

67

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

80

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Release historydanger

The latest release was published in November 2017, with no releases in the last 12 months and only three releases overall. This is strong evidence of an aging release line, despite the repository still existing.

Lifecycle scriptscaution

The package defines several Composer install and update lifecycle scripts. These add installation-time behavior that warrants attention, but the signal alone does not show that the scripts are unsafe.

Repo commit activitycaution

The repository recorded zero commits and zero active maintainers in the last three months. That indicates little current development capacity, although the repository was pushed more recently according to its archive status.

Repo issue activitycaution

There were no new or closed issues and no merged pull requests in the last month, despite 55 open issues and 8 open pull requests. This reinforces the maintenance concern but is less severe than an archived repository.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Renato Marinho

Direct Dependencies

DependencyLast ReleaseScore
nesbot/carbon
Version ^1.21
—
—
phploc/phploc
Version *
—
—
laravel/framework
Version 5.3.*
—
—
laravel/socialite
Version ^2.0
—
—
intervention/image
Version ^2.3
—
—

Weekly Downloads

Info

Last Published
9 years ago
Created
9 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform