Package Health

maxserv/yaml_configuration

It has a clear license, readable documentation, and no install-time scripts. However, maintenance and project security oversight appear to have stopped, making long-term support unlikely.

Latest 1.2.1PackagistPackagist

15%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

0

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

64

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Using this package? Scan for Free

Health Score Breakdown

Registry deprecationdanger

Packagist marks the entire package as abandoned, with no replacement named. This is a severe adoption warning because the registry no longer presents it as an actively supported dependency.

Release historydanger

The package has 17 releases, but the latest was about 8 years ago and there were no releases in the last 12 months. Its early release cadence does not compensate for the prolonged silence.

Repo commit activitydanger

The repository recorded no commits and no active maintainers in the last 3 months. This strongly indicates that maintenance has stopped, although it does not by itself prove the code is unusable.

Repo toolingcaution

Composer is used for the build, which fits the package ecosystem, but no security-scanning tools were detected. This is a modest transparency and maintenance gap rather than a standalone adoption blocker.

Security policycaution

The repository has no security policy. For a package that imports data and generates configuration, this reduces transparency about how security issues are handled.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

DependencyLast ReleaseScore
symfony/yaml
Version 2.6 - 3.99
—
—
typo3/cms-core
Version >=6.2.0,<8.8.0
—
—

Weekly Downloads

Info

Last Published
8 years ago
Created
10 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform