Package Health

pchouse/php-di

Documentation, tests, licensing, and a matching source repository provide a solid baseline. The tiny public footprint, beta status, and sparse release history leave long-term support uncertain.

Latest 2.0.0-BETA1PackagistPackagist

62%

Total Score

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

75

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

67

Health Score Breakdown

Release historycaution

Only two releases exist across about 2 years and 8 months, with one release in the last 12 months and a roughly 2-year, 5-month median gap. The recent release shows some activity, but the history is sparse.

Repo popularitycaution

The repository has zero stars and forks and only one watcher. Popularity is not required for a healthy small package, but this provides little independent evidence of maturity or community support.

Repo toolingcaution

Composer build tooling is present, but no security-scanning tooling was detected. This is a modest transparency and maintenance gap, not a severe risk by itself.

Security policycaution

The repository has no SECURITY.md or other detected security policy. For a dependency-injection library, this modestly limits disclosure transparency.

Version stabilitycaution

The assessed version is a beta release and half of recent releases are prereleases, so its API and behavior may still change. This is a meaningful caveat for a dependency.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

João M F Rebelo

Direct Dependencies

DependencyLast ReleaseScore
monolog/monolog
Version ^3.10.0

Weekly Downloads

Info

Last Published
3 months ago
Created
2 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform