Package Health

neuron-php/application

This release is usable and has solid package hygiene: it is MIT-licensed, includes tests and a substantial README, has a matching repository with organization backing, is not deprecated or archived, and has a strong recent release cadence. However, the repository reports zero commits and zero active maintainers in the last three months despite a release pushed very recently, creating uncertainty about ongoing source-level maintenance; the repository also lacks security scanning and a security policy, and its CI workflow does not declare top-level token permissions. The package is therefore a reasonable dependency with elevated maintenance and repository-security concerns rather than a clearly unhealthy one.

Latest 0.8.18PackagistPackagist

68%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

63

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

83

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

80

Health Score Breakdown

Repo commit activitydanger

The repository records zero commits and zero active maintainers over the last three months, despite a latest push and release shortly before collection. This mismatch creates meaningful uncertainty about ongoing maintenance capacity.

Repo issue activitycaution

There are no open issues or pull requests and no recent issue or PR activity. This is ambiguous: it may reflect a quiet project rather than neglect, so it is only a mild concern.

Repo popularitycaution

The repository has zero stars, forks, and watchers, providing no external adoption evidence. Low popularity is supporting information rather than a decisive health problem for a small framework component.

Repo toolingcaution

Composer build tooling is present, but no security-scanning tooling is detected. The missing scanning coverage is a repository-security and transparency gap, though it is not evidence of maliciousness.

Security policycaution

No repository security policy was found, leaving vulnerability-reporting and response expectations undocumented.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Lee Jones

Direct Dependencies

DependencyLast ReleaseScore
symfony/yaml
Version ^6.4
neuron-php/util
Version 0.6.*
neuron-php/events
Version ^0.6.2
neuron-php/logging
Version 0.9.*
neuron-php/patterns
Version ^0.7.2

Weekly Downloads

Info

Last Published
10 days ago
Created
1 year ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform