Package Health

mantle-framework/database

The package has a clear license, stable versioning, regular registry releases, and organization backing. Consumer documentation and repository security practices are limited, while recent repository activity is absent despite current releases.

Latest v1.22.2PackagistPackagist

68%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

75

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

88

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

83

Health Score Breakdown

Package scaffoldingcaution

The published artifact has no README, tests, or changelog, and the repository indicators show none either. Missing tests and changelog are not packaging gaps here, but the absent README reduces consumer transparency for a database library.

Repo commit activitycaution

There were zero commits and zero active maintainers in the last 3 months. That weakens confidence in source-level maintenance, although the frequent registry releases provide partial counterevidence.

Repo toolingcaution

The repository uses Composer for builds, but no security scanning tool was detected. Build tooling is present; the missing scanning is a modest transparency and hygiene gap.

Security policycaution

No repository security policy was found. This does not show a security defect, but it leaves vulnerability-reporting expectations undocumented.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Alley

Direct Dependencies

DependencyLast ReleaseScore
psr/container
Version ^1.1.1 || ^2.0.2
—
—
symfony/finder
Version ^7.2.0
—
—
mantle-framework/support
Version ^1.0
—
—
mantle-framework/contracts
Version ^1.0
—
—
alleyinteractive/wp-filter-side-effects
Version ^1.0 || ^2.0
—
—

Weekly Downloads

Info

Last Published
14 days ago
Created
4 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform