Package Health

plumphp/plum-twig

The package has a usable README, tests, release notes, and no install-time scripts, while its repository remains available. The limited security tooling and single published release provide little reassurance for long-term maintenance.

Latest v0.1PackagistPackagist

43%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

50

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Release historydanger

This is the sole release, published in May 2015, with no releases in the past 12 months; that is strong evidence of abandonment risk for a dependency.

Repository archiveddanger

The repository is not archived, but its last push was in October 2015, confirming that source activity has been inactive for roughly 11 years.

Repo toolingcaution

The project uses Composer and Make, but no security-scanning tooling was detected; this is a modest transparency and maintenance gap for an old package.

Security policycaution

The repository has no security policy, leaving vulnerability-reporting expectations undocumented. This is a secondary concern because the larger risk is the prolonged lack of activity.

Version stabilitycaution

The latest version is v0.1 and is not a stable major release, which adds maturity uncertainty alongside the absence of subsequent releases.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Florian Eckerstorfer

Direct Dependencies

DependencyLast ReleaseScore
twig/twig
Version ~1.9
cocur/vale
Version ~0.2
plumphp/plum
Version ~0.2

Weekly Downloads

Info

Last Published
11 years ago
Created
11 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform