Package Health

sgomez/simplesamlphp-module-twig

The package has a clear MIT license, a matching repository, and usable README. No releases or commits since March 2016 and one registry maintainer make long-term compatibility uncertain.

Latest v1.0.2PackagistPackagist

38%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

25

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

75

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Health Score Breakdown

Release historydanger

The package has had no release in roughly 10 years; its three releases were concentrated on March 27, 2016. This is strong evidence of abandonment risk despite the stable current version.

Repo commit activitydanger

The repository recorded zero commits and zero active maintainers in the last three months, consistent with the long release gap and providing no evidence of ongoing maintenance.

Maintainerscaution

Only one registry account has publish access. Because the repository is user-owned rather than organization-backed, there is little observed maintainer redundancy.

Repo toolingcaution

Composer build tooling is present, but no security-scanning tools were detected. This is a modest transparency and maintenance gap alongside the otherwise very old project activity.

Security policycaution

The repository has no security policy. This reduces transparency for reporting and handling vulnerabilities, although it does not by itself show that the package is unsafe.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Sergio Gómez

Direct Dependencies

DependencyLast ReleaseScore
twig/twig
Version ~1.24|~2.0
—
—
symfony/yaml
Version ~2.3|~3.0
—
—
symfony/finder
Version ~2.3|~3.0
—
—
symfony/translation
Version ~2.3|~3.0
—
—
symfony/twig-bridge
Version ~2.3|~3.0
—
—

Weekly Downloads

Info

Last Published
10 years ago
Created
10 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform