Package Health

metamodels/contao-frontend-editing

MetaModels frontend editing integrations

Latest 2.3.0PackagistPackagist

58%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

75

Dependencies
Dependencies
Evaluates the health and security of package dependencies

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

94

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Dependency profilecaution

Nine runtime dependencies make this a moderately coupled integration package, increasing reliance on compatibility across Contao, MetaModels, Symfony, and related components.

Release historycaution

The package has five releases over roughly seven years, with no release in the last 12 months and a median interval of about 567 days; this indicates slow maintenance rather than abandonment by itself.

Repo commit activitycaution

There were no commits and no active maintainers in the last 3 months, which is a meaningful maintenance concern even though the repository was pushed more recently than that window.

Security policycaution

No security policy was found in the repository, reducing transparency about vulnerability reporting and response expectations.

Workflow auditcaution

All six action references are unpinned, and the audit found a high-confidence, high-severity condition that always evaluates true. The workflow has no untrusted checkout or script-injection path, so this is workflow hygiene risk rather than a severe adoption blocker.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Christian Schiffler
Stefan Heimes

Direct Dependencies

DependencyLast ReleaseScore
metamodels/core
Version ^2.3
—
—
contao/core-bundle
Version ^4.13.0 <5.0
—
—
symfony/http-foundation
Version ^5.4
—
—
contao-community-alliance/dc-general
Version ^2.3
—
—
contao-community-alliance/url-builder
Version ^1.3
—
—

Weekly Downloads

Info

Last Published
1 year ago
Created
7 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform