Package Health

querdos/qfile-encryption-bundle

Risky to adopt: the last release and repository update were in April 2017, with no releases in the last 12 months. It has tests, documentation, a stable version, and no deprecation notice, but its long inactivity and unclear repository match make ongoing support uncertain.

Latest v1.2PackagistPackagist

38%

Total Score

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

64

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Health Score Breakdown

Release historydanger

The package is about 9 years old, has only 3 releases, and has had no release in the last 12 months; the latest release was in April 2017. This is strong evidence of abandonment for a security-sensitive integration.

Repository archiveddanger

The repository is not marked archived, but it was last pushed in April 2017, which reinforces the release-history evidence of prolonged inactivity rather than compensating for it.

Repo package mentioncaution

The repository name does not match the package name and its README does not mention the package, so the linked repository may not clearly be the package's source project.

Security policycaution

The repository has no security policy. For a bundle handling encryption and temporary decrypted files, this is a transparency gap, though it is secondary to the much stronger evidence of long-term inactivity.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Hamza ESSAYEGH

Direct Dependencies

No direct dependencies.

Weekly Downloads

Info

Last Published
9 years ago
Created
9 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform