Package Health

idmarinas/settings-bundle

The package has useful documentation, a license, tests in the repository, and a security policy. Its stable release and matching source repository help, but the low adoption and inactive recent development leave maintenance risk.

Latest 1.2.0PackagistPackagist

54%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

89

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

100

Health Score Breakdown

Maintainerscaution

Only one registry account can publish the package. The linked repository is also owned by an individual, so there is no organizational backing shown to offset the single-maintainer concentration.

Project backingcaution

The registry namespace and repository owner match, but both are associated with a single user rather than an organization, so the project has limited visible backing.

Release historycaution

The package has five releases, but none were published in the last 12 months despite being about 18 months old, indicating a substantial slowdown in release activity.

Repo commit activitycaution

The repository recorded 0 commits and 0 active maintainers in the last 3 months, which is the strongest evidence of currently inactive maintenance.

Repo issue activitycaution

There are no new or closed issues in the last month and one open pull request, showing little recent collaborative activity.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Iván Diaz Marinas (IDMarinas)

Direct Dependencies

DependencyLast ReleaseScore
idmarinas/common-bundle
Version ^3.4
—
—
doctrine/doctrine-bundle
Version ^2.13
—
—
symfony/framework-bundle
Version ^6.4 | ^7.1
—
—
gedmo/doctrine-extensions
Version ^3.19
—
—

Weekly Downloads

Info

Last Published
1 year ago
Created
1 year ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform