Package Health

simplesamlphp/simplesamlphp-module-sanitycheck

It includes tests, a clear license, and Composer security checks, but its workflow references are all unpinned. The organization backing and matching repository improve transparency, yet they do not offset the maintenance concerns.

Latest v1.0.3PackagistPackagist

12%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

57

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

67

Using this package? Scan for Free

Health Score Breakdown

Registry deprecationdanger

Packagist marks the entire package as abandoned, with no replacement given. This is a direct warning against taking a new dependency on the package.

Release historydanger

The package has six releases since May 2019, but none in the last 12 months and its latest release was in January 2023. This supports the abandonment concern.

Repo commit activitydanger

The repository had zero commits and zero active maintainers in the last three months. Combined with the archived state, this shows no ongoing maintenance capacity.

Repository archiveddanger

The linked repository is archived, and its last push was in April 2023. Archived source indicates the project is no longer maintained.

Security policycaution

No repository security policy was found. This is a minor transparency gap, but it is less important than the package's explicit abandonment and archived repository.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Andreas Åkre Solberg

Direct Dependencies

DependencyLast ReleaseScore
simplesamlphp/simplesamlphp
Version ^2.0.0-rc2
—
—
simplesamlphp/composer-module-installer
Version ^1.3.2
—
—

Weekly Downloads

Info

Last Published
3 years ago
Created
7 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform