Package Health

secit-pl/imap-bundle

The stable major version, clear MIT licensing, and matching source repository support adoption. The package has had no registry release in over two years and no commits in the last three months; missing tests and security documentation add maintenance concerns.

Latest 3.2.1PackagistPackagist

58%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

81

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Health Score Breakdown

Package scaffoldingcaution

The published artifact includes a substantial README, which helps consumers integrate the Symfony bundle. The absence of tests and a changelog in the repository reduces development transparency, although those omissions are not unusual in small packages.

Release historycaution

The package has 18 releases since 2017, but none in the last 12 months; its latest registry release was over two years ago. This is a meaningful maintenance concern despite its established history.

Repo commit activitycaution

There were no commits and no active maintainers in the last three months. Combined with the lack of registry releases in the last year, this indicates currently stalled maintenance.

Repo toolingcaution

Composer build tooling is present, but no security scanning tool was detected. That is a modest process gap rather than evidence that the package is unsafe to depend on.

Security policycaution

The repository has no security policy. This weakens vulnerability-reporting transparency for a package that integrates with mail infrastructure.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Tomasz Gemza

Direct Dependencies

DependencyLast ReleaseScore
php-imap/php-imap
Version ^4.4|^5.0
symfony/framework-bundle
Version ^6.4|^7.0
symfony/dependency-injection
Version ^6.4|^7.0

Weekly Downloads

Info

Last Published
2 years ago
Created
9 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform