Package Health

lichi/yii2-psr7-bridge

Tests and a clear BSD-3-Clause license provide some baseline transparency. Zero repository traction and no security policy leave little evidence of ongoing support.

Latest 1.0.0PackagistPackagist

38%

Total Score

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

38

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Health Score Breakdown

Package scaffoldingdanger

The artifact includes a substantial README and tests, but the README explicitly describes the bridge as very alpha quality and advises users not to use it because features are missing and behavior can be unexpected.

Release historydanger

This package has made only one release, about 16 months ago, with no releases in the last 12 months. That leaves substantial uncertainty about maintenance and whether the package reached a dependable state.

Repo popularitycaution

The repository has zero stars and forks and only one watcher. Popularity is not decisive by itself, but these counters provide no supporting evidence of an active user or contributor community.

Security policycaution

The linked repository has no security policy. This is a transparency and maintenance gap, although it is less important than the package's explicit alpha status and lack of release activity.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Charles R. Portwood II

Direct Dependencies

DependencyLast ReleaseScore
yiisoft/yii2
Version ^2.0.15
psr/http-message
Version ^1.0|^2.0
yidas/yii2-bower-asset
Version 2.0.13.1
psr/http-server-handler
Version ^1.0
laminas/laminas-diactoros
Version ^2.3|^3.0

Weekly Downloads

Info

Last Published
1 year ago
Created
1 year ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform