Package Health

openeuropa/oe_paragraphs

The package has a long release history, current documentation, tests, release notes, and a repository that clearly matches the package. Workflow auditing is complete, though security policy and automated security scanning are absent.

Latest 1.33.0PackagistPackagist

78%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

83

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

94

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Health Score Breakdown

Lifecycle scriptscaution

Composer post-install and post-update scripts run during dependency operations, adding execution surface for consumers even though this is common Composer behavior.

Repo bus factorcaution

One contributor made all five commits in the last three months. Organization ownership provides some handoff capacity, but no second recently active contributor is visible.

Repo toolingcaution

Composer build tooling is present, but no security scanning tools were detected, leaving an avoidable monitoring gap.

Security policycaution

The repository has no security policy, which makes vulnerability reporting and response expectations less transparent for users.

Workflow auditcaution

The single workflow was fully analyzed with no untrusted checkout, injection, or audit findings. Its only action reference is unpinned, which is a modest reproducibility and supply-chain hygiene gap.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

DependencyLast ReleaseScore
drupal/core
Version ^10 || ^11
—
—
drupal/paragraphs
Version ^1.18
—
—
drupal/typed_link
Version ^2.0
—
—
cweagans/composer-patches
Version ^1.7 || ^2.0
—
—

Weekly Downloads

Info

Last Published
2 months ago
Created
8 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform