Package Health

mobixcode/php-activerecord

Risky to adopt: the release is well documented and backed by a matching organization repository, but maintenance appears to have stopped nearly six years ago. It is not deprecated or archived, yet the lack of recent development makes future fixes and compatibility uncertain.

Latest v1.2.6PackagistPackagist

45%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

69

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

88

Health Score Breakdown

Release historydanger

Although the project has eight releases since 2013, it has published no release in nearly six years; this is strong evidence of stalled maintenance for a library dependency.

Repo commit activitydanger

The repository recorded zero commits and zero active maintainers in the last three months, consistent with an inactive project and increasing the risk that defects or compatibility issues will remain unresolved.

Repo issue activitycaution

There were no new or merged pull requests in the last month, and one pull request remains open. This suggests little current project activity, although the open-issue count is unknown.

Repo popularitycaution

The repository has zero stars, forks, and watchers. Popularity is only supporting evidence, but these values provide no external adoption signal to offset the maintenance concerns.

Repo toolingcaution

Composer is used for builds, but no security scanning tooling is present. This is a transparency and maintenance gap, though the absence of workflows limits the significance of that gap.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

No direct dependencies.

Weekly Downloads

Info

Last Published
5 years ago
Created
13 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform