Package Health

natepage/dd-trace-symfony-messenger

Its small scope and single runtime dependency limit the maintenance burden. However, the package has had no release or commit activity since June 2024, and it lacks a license, README, tests, changelog, and security policy.

Latest 0.1.21PackagistPackagist

38%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

25

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

57

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

83

Health Score Breakdown

Release historydanger

The package made 22 releases in a brief burst, but its latest release was in June 2024 and it has had no releases in the last 12 months. This is strong evidence of abandonment risk for a package published as a continuing dependency.

Repo commit activitydanger

There were no commits and no active maintainers in the last three months, consistent with the long release gap. For this small package, that materially increases abandonment risk.

Licensecaution

No license declaration or license file was found in the package or repository. That leaves the legal terms for using this dependency unclear.

Package scaffoldingcaution

The package has no README, tests, changelog, or release notes. Missing tests and changelog are normal for published artifacts, but the absent README is a real integration and transparency gap for a library.

Repo issue activitycaution

There was no issue or pull request activity in the last month. With no recent commits or releases to compensate, this supports the conclusion that the project is inactive.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

No direct dependencies.

Weekly Downloads

Info

Last Published
2 years ago
Created
2 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform