Package Health

navarr/dependency-annotation

Adds extra functionality for interpreting the @dependency annotation

Latest v2.1.0-alpha.1PackagistPackagist

46%

Total Score

unhealthy

Risky: no registry release for nearly five years and no recent repository commits, with the current version still marked alpha.

Health Score Breakdown

Release historydanger

The latest release was published nearly five years ago, with no releases in the last 12 months. That long gap materially raises abandonment risk despite the package's earlier release history.

Repo commit activitydanger

The repository recorded zero commits and zero active maintainers in the last three months. Combined with the long release gap, this is strong evidence of inactive maintenance.

Repo issue activitycaution

There were no new or closed issues or pull requests in the last month, while three issues and two pull requests remain open. This supports the broader picture of limited current project activity.

Security policycaution

The repository has no security policy. This is a transparency and response-process gap, though it is less serious than the clear maintenance concerns.

Version stabilitycaution

The assessed release is v2.1.0-alpha.1, and 63.6% of recent releases were prereleases. Depending on an alpha release adds compatibility and maturity risk.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

DependencyLast ReleaseScore
php-di/php-di
Version ^6
—
—
composer/semver
Version ^1|^2|^3
—
—
symfony/console
Version ^5
—
—
nikic/php-parser
Version ^4
—
—
composer/composer
Version ^2
—
—

Weekly Downloads

Info

Last Published
5 years ago
Created
6 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform