Package Health

sasco/libredte

The repository has tests, recent commits, and an unarchived organizational owner. Workflow references are all unpinned, and no security policy is provided. Prefer the listed replacement package for new work.

Latest 24.1.1PackagistPackagist

42%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

75

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

71

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Health Score Breakdown

Registry deprecationdanger

Packagist marks the entire package as abandoned and names libredte/libredte-lib-core as its replacement. This is a substantial adoption risk despite the linked repository remaining active.

Release historycaution

The package has made no registry release in the last 12 months, and its latest release was on May 19, 2024. Active repository work partly compensates for the stale published release cadence, but not fully.

Repo bus factorcaution

Two contributors made 33 commits in the last three months, but one accounts for 94% of them. The organizational project backing provides some handoff capacity, yet contributor concentration remains a maintenance concern.

Repo toolingcaution

Composer build tooling is present, but no security scanning tools are reported. This is a modest transparency and maintenance gap rather than evidence of abandonment.

Security policycaution

The repository has no security policy. For a library handling electronic invoicing and signing integrations, this reduces disclosure transparency and raises a maintenance concern.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

LibreDTE

Direct Dependencies

DependencyLast ReleaseScore
tecnickcom/tcpdf
Version ~6.7.5
—
—
phpseclib/phpseclib
Version ^2.0.47
—
—

Weekly Downloads

Info

Last Published
2 years ago
Created
6 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform