Package Health

hypejunction/elgg-codemirror

The package is small and focused, with a clear README, changelog, and release notes for this version. Its maintenance record is effectively dormant, and the repository has no security policy, leaving long-term support uncertain.

Latest 1.0.0PackagistPackagist

43%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

0

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

86

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Release historydanger

This is a single-release package, and its only release was about 7 years ago with no releases in the past 12 months. That strongly raises abandonment risk.

Repo commit activitydanger

The repository recorded no commits and no active maintainers in the past 3 months, consistent with the roughly 7-year release gap. The package is not archived, but current maintenance is not evident.

Security policycaution

The linked repository has no security policy. For a package that has received no maintenance for years, this is a meaningful transparency and response gap.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Ismayil Khayredinov

Direct Dependencies

DependencyLast ReleaseScore
composer/installers
Version ~1.0
npm-asset/codemirror
Version ^5.43

Weekly Downloads

Info

Last Published
7 years ago
Created
7 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform