Package Health

nguyenanhung/codeigniter3-skeleton

It has a clear README, changelog, matching source repository, and declared license. The repository is not archived, but it lacks a security policy and automated security scanning.

Latest v1.1.9PackagistPackagist

57%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

86

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

67

Health Score Breakdown

Release historycaution

The package has 22 releases and a roughly 20-day median release interval, but it has had no release in about 21 months. That long silence lowers confidence in ongoing maintenance.

Repo commit activitycaution

The repository recorded no commits and no active maintainers in the last 3 months, reinforcing the extended release gap. This suggests maintenance may have stalled.

Repo toolingcaution

Composer is used for builds, which is appropriate, but no security-scanning tools were detected. That reduces evidence of proactive dependency and code-risk monitoring.

Security policycaution

The repository has no security policy, so there is no documented process for reporting or handling vulnerabilities. This is a transparency and response-readiness gap.

Workflow auditcaution

The single workflow was fully analyzed with no dangerous triggers or audit findings, but all 3 of its action references are unpinned. That leaves the build exposed to moving action versions.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Nguyen An Hung

Direct Dependencies

DependencyLast ReleaseScore
nguyenanhung/my-debug
Version ^4.0 || ^3.0
nguyenanhung/requests
Version ^4.0 || ^3.0
nguyenanhung/basic-firewall
Version ^2.0
nguyenanhung/codeigniter-framework
Version ^3.2

Weekly Downloads

Info

Last Published
1 year ago
Created
4 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform