Package Health

myplanet/skeletor

The matching repository, README, and release notes provide useful context. No license is declared or detected, while install/update scripts add operational surface; organization backing and stable versioning are modest positives.

Latest 8.0.3PackagistPackagist

42%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

75

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

67

Health Score Breakdown

Release historydanger

The latest registry release was about 9 years ago, with no releases in the last 12 months. This is strong evidence of abandonment risk despite three historical releases.

Repo commit activitydanger

The repository recorded 0 commits and 0 active maintainers in the last 3 months. Combined with the old registry release, this indicates the project is not receiving current maintenance.

Licensecaution

No declared license, license file, or detected repository license was found. That leaves the release without clear permission for downstream use.

Lifecycle scriptscaution

The package defines pre- and post-install/update Composer scripts. These are plausible for a Drupal install profile, but they increase installation complexity and execution surface.

Repo toolingcaution

Composer build tooling is present, showing a defined build mechanism, but no security scanning tools are reported. The tooling evidence is mixed rather than a decisive health concern.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Myplanet

Direct Dependencies

DependencyLast ReleaseScore
drupal/core
Version ~8.0
—
—
drush/drush
Version ~8.0
—
—
drupal/restui
Version ^1.15
—
—
drupal/console
Version ~1.0
—
—
drupal/openapi
Version ^1.0@alpha
—
—

Weekly Downloads

Info

Last Published
9 years ago
Created
9 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform