Package Health

perspeqtive/sulu-action-blocks-bundle

This release appears healthy and reasonable to depend on: it is a stable, non-prerelease version from an organization-owned, non-archived repository with recent activity, 41 commits in the last 3 months, tests, a substantial README, and a package structure consistent with a maintained PHP/Sulu bundle. The main limitations are a very concentrated commit distribution, no repository security policy, and workflow permissions that are not explicitly declared; these are transparency and governance gaps rather than evidence of abandonment. Low popularity and the absence of a changelog are modest concerns, but are outweighed by active development, repository/package alignment, and the presence of tests.

Latest 3.0.2PackagistPackagist

84%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

88

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

89

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

80

Health Score Breakdown

Repo issue activitycaution

There is only one open issue and one new issue in the last month, with no pull requests; this provides limited evidence about issue responsiveness but does not indicate severe neglect.

Repo popularitycaution

Five stars and no forks indicate limited adoption and community validation, but popularity is supporting evidence and does not outweigh the repository's active development and tests.

Repo toolingcaution

Composer build tooling is present, but no security scanning tools were detected; the missing security automation is a governance gap without evidence of abandonment.

Security policycaution

No repository security policy was found, reducing vulnerability-reporting transparency; this is a hygiene concern rather than a severe health risk.

Token permissionscaution

The sole workflow lacks top-level token permissions, so its permissions are not explicitly constrained in the collected metadata; no top-level write permissions were reported.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

DependencyLast ReleaseScore
sulu/sulu
Version ^3.0
—
—
nesbot/carbon
Version 3.10.*
—
—
symfony/monolog-bridge
Version ^7.3
—
—
symfony/monolog-bundle
Version ^4.0
—
—
friendsofsymfony/rest-bundle
Version *
—
—

Weekly Downloads

Info

Last Published
18 days ago
Created
5 months ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform