Package Health

lefuturiste/php-api

The template includes a README, a concrete file tree, and no install-time scripts, making its intended use clear. Its lone maintainer and lack of security scanning leave little ongoing oversight for a production dependency.

Latest v1.1PackagistPackagist

42%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

25

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

63

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Release historydanger

The latest release was in September 2018, with no releases in the last 12 months. Nearly eight years without a release is strong evidence of abandonment for a framework template.

Repo commit activitydanger

The repository recorded zero commits and zero active maintainers over the last three months, consistent with the package's long release gap and showing no current maintenance activity.

Maintainerscaution

Only one registry maintainer is listed, leaving a thin publishing base. The linked repository is user-owned rather than organization-backed, so there is no provided evidence of broader maintenance capacity.

Repo toolingcaution

The project uses Make and Composer, but no security-scanning tooling was detected. That limits automated oversight, although build tooling provides some project structure.

Security policycaution

The linked repository has no security policy, reducing transparency for reporting and handling vulnerabilities. This is a secondary concern beside the much longer maintenance gap.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

lefuturiste

Direct Dependencies

DependencyLast ReleaseScore
slim/slim
Version ^3.10
—
—
tracy/tracy
Version ^2.5
—
—
vlucas/phpdotenv
Version ^2.5
—
—
php-di/slim-bridge
Version ^2.0
—
—

Weekly Downloads

Info

Last Published
8 years ago
Created
8 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform