Package Health

horde/mail_autoconfig

Clear documentation, tests, release notes, and a matching organization-owned repository support dependable use. The main remaining concern is that recent work comes from one contributor, while six of seven workflow actions are unpinned.

Latest v2.0.0PackagistPackagist

82%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

88

Dependencies
Dependencies
Evaluates the health and security of package dependencies

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

94

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

67

Health Score Breakdown

Dependency profilecaution

Eight runtime dependencies, including several Horde components and a DNS library, create a meaningful dependency surface but are reasonable for a mail autoconfiguration library.

Repo bus factorcaution

All three recent commits came from one contributor, concentrating maintenance capacity and increasing continuity risk; organization ownership partly compensates.

Repo toolingcaution

Composer is used for builds, but no security scanning tool was detected, leaving a security-hygiene gap.

Security policycaution

The repository has no security policy, reducing transparency about vulnerability reporting and response.

Workflow auditcaution

Both workflows were analyzed without high- or medium-severity findings, and permissions are not broadly writable. However, six of seven action references are unpinned, leaving avoidable workflow reproducibility risk.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Michael Slusarz

Direct Dependencies

DependencyLast ReleaseScore
horde/http
Version ^3 || dev-FRAMEWORK_6_0
—
—
horde/mail
Version ^3 || dev-FRAMEWORK_6_0
—
—
horde/smtp
Version ^2 || dev-FRAMEWORK_6_0
—
—
horde/exception
Version ^3 || dev-FRAMEWORK_6_0
—
—
horde/imap_client
Version ^3 || dev-FRAMEWORK_6_0
—
—

Weekly Downloads

Info

Last Published
3 months ago
Created
12 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform