Package Health

marcel-mathias-nolte/contao-filesmanager-fileusage

Usable with caveats: the release is licensed, documented, tested, stable, and not deprecated or archived. However, it has had no release in over two years and no commits in the last three months, with no security policy or automated security scanning.

Latest 1.0.12PackagistPackagist

62%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

67

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

88

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

88

Health Score Breakdown

Release historycaution

The package has 14 releases since October 2020, but none in the last two years and latest release activity stopped in March 2024. That long release gap raises maintenance and compatibility concerns.

Repo commit activitycaution

There were zero commits and zero active maintainers in the last three months. Combined with the long release gap, this is meaningful evidence of currently inactive maintenance.

Repo issue activitycaution

Five issues remain open, with no new or closed issues and no merged pull requests in the last month. This suggests limited recent responsiveness, though it is not by itself evidence of abandonment.

Repo toolingcaution

Composer is used for builds, but the repository has no security scanning tools. For a dependency package this is a transparency and detection gap, although no workflows are present to introduce workflow-specific risk.

Security policycaution

The repository has no security policy, leaving no documented process for reporting or handling vulnerabilities.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Leo Feyer
Contao Community
Marcel Mathias Nolte

Direct Dependencies

DependencyLast ReleaseScore
contao/core-bundle
Version ^4.4 || ^5.0
contao-community-alliance/composer-plugin
Version ^2.4.0 || 3.*

Weekly Downloads

Info

Last Published
2 years ago
Created
5 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform