Package Health

simplesamlphp/simplesamlphp-module-examplecomposer

Healthy and reasonable to use. It has a long release history, a current stable release, organizational backing, tests in the repository, and basic security tooling; the main caveat is that no commits were recorded in the last three months and workflow permissions are not consistently restricted.

Latest v2.1.1PackagistPackagist

78%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

83

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

94

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

80

Health Score Breakdown

Repo commit activitycaution

No commits or active maintainers were recorded in the last three months. The recent registry releases and July 2026 repository push partly compensate, but current maintenance capacity is still less evident.

Repo popularitycaution

The repository has no stars and only two forks, indicating limited public adoption, but popularity is supporting evidence and the package has organizational backing and a long release history.

Security policycaution

The repository has no security policy. This is a transparency gap for reporting vulnerabilities, although the package is a small example module and repository security scanning is present.

Token permissionscaution

Two workflows lack top-level permissions declarations and one workflow declares top-level write access. This is weaker permission hygiene than least-privilege configuration, even though no dangerous workflow pattern was detected.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

DependencyLast ReleaseScore
symfony/http-foundation
Version ^7.4
—
—
simplesamlphp/simplesamlphp
Version ^2.5@dev
—
—

Weekly Downloads

Info

Last Published
6 months ago
Created
12 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform