Package Health

oui/oui_flat

The package includes a clear README, release notes, matching GPL-2.0 licensing, and no install-time scripts. Its small project footprint and lack of security scanning provide limited assurance for a plugin that can alter site templates.

Latest 0.7.0-beta2PackagistPackagist

38%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

33

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

67

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Release historydanger

Only three releases were published, with the latest on June 26, 2017 and none in the subsequent 12 months. This is strong evidence of abandonment risk for a package intended as an active CMS plugin.

Repo commit activitydanger

There were no commits and no active maintainers in the preceding three months, consistent with the release history and indicating a serious abandonment risk.

Project backingcaution

The repository is owned by an individual rather than an organization, so the small maintainer base provides limited visible backing for a long-lived plugin.

Repo issue activitycaution

There were no new or closed issues or pull requests in the preceding month. With no open backlog this is not itself harmful, but it provides no evidence of current maintenance.

Repo popularitycaution

Seven stars and three forks indicate a small project footprint. Popularity is supporting evidence only, but it offers little compensating evidence for the observed inactivity.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Nicolas Morand, Jukka Svahn

Direct Dependencies

DependencyLast ReleaseScore
textpattern/lock
Version >=4.6.0
textpattern/installer
Version *

Weekly Downloads

Info

Last Published
9 years ago
Created
10 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform