Package Health

licxisky/php-to-zephir

The package includes tests, a usable README, and an MIT license file. Its tiny user base and lack of a security policy provide little supporting evidence for long-term maintenance.

Latest 0.2.1PackagistPackagist

38%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

69

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Release historydanger

The package has seven releases, but its latest release was on February 13, 2019, with no releases in the last 12 months. More than seven years without a release is strong abandonment evidence.

Repo commit activitydanger

There were zero commits and zero active maintainers in the last three months, consistent with the more than seven-year release gap and indicating no observable ongoing maintenance.

Repo popularitycaution

The repository has one star and no forks, offering very little external adoption or community support. Popularity is supporting evidence rather than decisive on its own.

Repo toolingcaution

The repository uses Composer for builds, but no security scanning tools were detected. This is a modest transparency and maintenance-hygiene gap, not evidence that the package is unsafe by itself.

Security policycaution

The repository has no security policy, leaving no documented channel or process for handling vulnerabilities. Combined with the absent recent maintenance, this weakens confidence in support.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Stéphane Demonchaux

Direct Dependencies

DependencyLast ReleaseScore
phalcon/zephir
Version 0.8.*
symfony/console
Version 2.7.*
nikic/php-parser
Version 1.4.*
phpdocumentor/reflection-docblock
Version 2.0.*

Weekly Downloads

Info

Last Published
10 years ago
Created
11 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform