Package Health

graham-campbell/bootstrap-cms

The alpha release still has clear documentation, tests, a changelog, and a license, but installation runs several lifecycle scripts and the project has no security-scanning tooling or policy. Those positives cannot make this a dependable long-term dependency.

Latest v0.9.0-alphaPackagistPackagist

10%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

0

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

50

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Using this package? Scan for Free

Health Score Breakdown

Registry deprecationdanger

Packagist marks the entire package as abandoned, with no replacement package supplied. This is a direct warning against taking a new dependency on it.

Release historydanger

Although the package has 18 releases over roughly 13 years, it has had no releases in more than 11 years, indicating prolonged abandonment.

Repo commit activitydanger

The repository recorded zero commits and zero active maintainers in the last three months, consistent with the archived status and lack of recent releases.

Repository archiveddanger

The linked source repository is archived and was last pushed more than 10 years ago. An archived project is not receiving normal maintenance or fixes.

Lifecycle scriptscaution

The package runs post-create, post-install, post-update, and pre-update Composer scripts. These increase installation and update complexity and deserve caution for a dependency.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Graham Campbell

Direct Dependencies

DependencyLast ReleaseScore
fideloper/proxy
Version ~3.0
—
—
illuminate/html
Version 5.0.*
—
—
lightgear/asset
Version ~2.0
—
—
laravel/framework
Version 5.0.*
—
—
graham-campbell/core
Version ~2.0
—
—

Weekly Downloads

Info

Last Published
11 years ago
Created
13 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform