Package Health

jelix/jcommunity-module

This is a generally healthy and actively maintained release: it has a long history since 2015, 48 releases, three releases in the last 12 months, a stable non-prerelease version, an unarchived repository, clear GPL-2.0 licensing, and a repository that matches and documents the package. The main concerns are concentrated maintenance activity from one contributor, 14 open issues with no recent issue or pull-request movement, and the absence of a security policy or security-scanning tooling. These concerns warrant routine dependency review but do not indicate abandonment, especially given the organization-owned project and recent release and commit activity.

Latest v1.4.7PackagistPackagist

78%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

70

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

89

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

90

Health Score Breakdown

Maintainerscaution

Only one registry publishing account is listed, which is a potential publishing concentration; however, this is partly compensated by the linked repository being owned by the Jelix organization and by observed recent releases.

Repo bus factorcaution

All 4 recent commits came from one contributor, creating a low individual bus factor; the organization-owned repository provides some capacity to hand maintenance off, so this is a caution rather than a severe risk.

Repo issue activitycaution

There are 14 open issues, with no new or closed issues and no pull-request activity in the last month, indicating limited visible issue handling and a maintenance-transparency concern.

Repo popularitycaution

The repository has 0 stars and 5 forks/watchers, so external adoption evidence is limited; this is supporting context rather than a decisive health problem for a small framework module.

Repo toolingcaution

The project uses Make and Composer, but no security-scanning tools are detected; build tooling is positive while the security-tooling gap modestly lowers transparency.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Laurent Jouanneau

Direct Dependencies

No direct dependencies.

Weekly Downloads

Info

Last Published
16 days ago
Created
11 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform