Package Health

proophsoftware/event-machine-skeleton

Risky to adopt: this package has clear documentation, tests, licensing, and organizational backing, but its last release and repository activity were nearly eight years ago. The long maintenance gap makes future compatibility and support uncertain.

Latest v0.16.0PackagistPackagist

43%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Dependencies
Dependencies
Evaluates the health and security of package dependencies

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

67

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Release historydanger

The package has 23 releases and a historically rapid median release interval, but it has had no release in nearly eight years and none in the last 12 months. That prolonged release gap is a significant abandonment risk.

Repo commit activitydanger

The repository recorded zero commits and zero active maintainers during the last three months. Combined with the old last release, this is the strongest evidence that maintenance has stopped.

Dependency profilecaution

This is a Dockerized application skeleton with 15 runtime dependencies, including storage, messaging, HTTP, and framework components. That breadth increases compatibility and maintenance exposure, especially given the long release gap.

Repo popularitycaution

The repository has 33 stars and 3 forks, indicating some real adoption, but these modest counters are only supporting evidence and do not outweigh the extended maintenance gap.

Repo toolingcaution

The repository uses Composer, confirming basic build tooling, but it has no security-scanning tools. This is a transparency and maintenance gap, though not as severe as the lack of recent development.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Alexander Miertsch
Sandro Keil

Direct Dependencies

DependencyLast ReleaseScore
psr/log
Version ^1.0
—
—
monolog/monolog
Version ^1.21
—
—
nikic/fast-route
Version ^1.0
—
—
prooph/pdo-event-store
Version ^1.0
—
—
roave/security-advisories
Version dev-master
—
—

Weekly Downloads

Info

Last Published
7 years ago
Created
9 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform