Package Health

ryunosuke/castella

php dependency injection container

Latest v2.1.0PackagistPackagist

60%

Total Score

caution

No commits in three months, one registry maintainer, and very low repository activity make maintenance capacity uncertain.

Health Score Breakdown

Lifecycle scriptscaution

The package runs both post-install-cmd and post-update-cmd scripts, adding install-time behavior that consumers must account for, though this alone is not evidence of poor maintenance.

Maintainerscaution

Only one registry account has publish access. Because the repository is user-owned rather than organization-owned, this indicates limited publishing redundancy, although it does not prove the project is abandoned.

Project backingcaution

The package and repository are backed by individual user accounts rather than an organization. That leaves less visible institutional continuity, consistent with the single-maintainer concern.

Release historycaution

The project is about 4 years old with 15 releases, but only one release in the last 12 months and a median interval of about 68 days indicate a relatively slow cadence.

Repo commit activitycaution

The repository recorded zero commits and zero active maintainers during the last three months. The recent package release and repository push provide some counterevidence, but current development activity is still weak.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

ryunosuke

Direct Dependencies

DependencyLast ReleaseScore
psr/container
Version 1.* || 2.*
—
—

Weekly Downloads

Info

Last Published
1 day ago
Created
4 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform