Package Health

recruiterphp/recruiter

The repository has tests, recent pushes, two active contributors, and clear release notes for this breaking version. Workflow references are all unpinned, and no security policy or automated security scanning is present.

Latest v5.0.0PackagistPackagist

68%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

100

Dependencies
Dependencies
Evaluates the health and security of package dependencies

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

88

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Dependency profilecaution

The release has 14 runtime dependencies, including PHP extensions, MongoDB, Symfony, logging, and project-specific packages; this is a substantial integration surface but fits a MongoDB job-queue library.

Release historycaution

The package has 25 releases since June 2019, but none in the last 12 months; this suggests a slowing release cadence, partly offset by recent repository activity.

Repo toolingcaution

The project uses Make and Composer, but no security-scanning tooling was detected, leaving a modest transparency and maintenance gap.

Security policycaution

The repository has no security policy, which makes vulnerability reporting and response expectations less clear.

Workflow auditcaution

Both workflows were analyzed without audit findings or untrusted triggers, and one scopes permissions read-only. However, all 12 action references are unpinned, weakening build reproducibility and supply-chain hygiene.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

gabriele.lana
Contributors

Direct Dependencies

DependencyLast ReleaseScore
psr/log
Version ^3.0
—
—
mongodb/mongodb
Version ^2.1
—
—
monolog/monolog
Version ^3.9
—
—
symfony/console
Version ^7.3
—
—
recruiterphp/geezer
Version ^7.0
—
—

Weekly Downloads

Info

Last Published
1 year ago
Created
7 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform