Package Health

sbsedv/input-converter-bundle

The MIT license, clear README, and read-only workflow permissions provide useful transparency. Its source has been inactive for over three years and the registry marks the package abandoned, so pinning this release leaves substantial maintenance risk.

Latest v3.1.0PackagistPackagist

12%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

0

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

50

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Using this package? Scan for Free

Health Score Breakdown

Registry deprecationdanger

Packagist marks the entire package as abandoned, with no replacement provided. This is a severe warning for taking a new dependency on the release.

Release historydanger

The package has five releases, but none in the last 12 months; its latest release was July 28, 2023, roughly 3 years and 2 months before collection. This reinforces the abandonment concern.

Repo commit activitydanger

The repository recorded zero commits and zero active maintainers in the last 3 months. Together with the archived state, this shows no current maintenance capacity.

Repository archiveddanger

The linked repository is archived and was last pushed on July 28, 2023, indicating the project is no longer actively maintained.

Workflow auditcaution

Both workflows were analyzed successfully, use read-only permissions, and have no reported audit findings. However, all four action references are unpinned, which is a minor supply-chain hygiene gap.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Daniel Burger

Direct Dependencies

DependencyLast ReleaseScore
sbsedv/input-converter
Version ^3.0
—
—
symfony/framework-bundle
Version ^6.1
—
—

Weekly Downloads

Info

Last Published
3 years ago
Created
4 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform