Package Health

mopa/bootstrap-sandbox-bundle

The MIT license and modest dependency set are positives. Repository tests exist, but the project shows no recent maintenance and this release remains an alpha, making adoption a liability.

Latest v2.2.0-alpha1PackagistPackagist

18%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

25

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

64

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Using this package? Scan for Free

Health Score Breakdown

Release historydanger

Only two releases were published, with the latest more than 13 years ago and none in the last 12 months. This is strong evidence of abandonment risk.

Repo commit activitydanger

The repository had zero commits and zero active maintainers during the last three months. Combined with the old last push, this is strong abandonment evidence.

Repo issue activitycaution

There were no new or closed issues or pull requests in the last month, while five issues and one pull request remain open. This supports the broader picture of inactivity.

Repo toolingcaution

Composer build tooling is present, but no security scanning tools were detected. This is a hygiene gap rather than evidence that the package is unsafe by itself.

Repository archivedcaution

The repository is not archived, which is a compensating sign, but its last push was in 2019 and does not indicate current maintenance.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Philipp A. Mohrenweiser
Community contributions

Direct Dependencies

DependencyLast ReleaseScore
liip/theme-bundle
Version dev-master
—
—
mopa/bootstrap-bundle
Version 2.2.0-alpha1
—
—
knplabs/knp-menu-bundle
Version 2.0.x-dev
—
—

Weekly Downloads

Info

Last Published
13 years ago
Created
13 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform