Package Health

simplon/feed

Risky to adopt for new projects: the package and repository have had no release or push activity since April 2016. It has a clear MIT license, a README, tests, and a small dependency footprint, but those strengths do not offset the long period without maintenance.

Latest 0.3.3PackagistPackagist

45%

Total Score

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

64

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

83

Health Score Breakdown

Release historydanger

The latest release was published in April 2016, with no releases in the last 12 months and a long gap since the seven-release history began. This is strong evidence of abandonment risk for a dependency.

Repo popularitycaution

The repository has zero stars, forks, and watchers. Popularity is only supporting evidence, but the absence of any visible adoption provides no compensating signal for the package's long inactivity.

Repository archivedcaution

The repository is not archived, which avoids the most severe repository-status problem, but it was last pushed in April 2016. The lack of repository activity still materially lowers confidence in ongoing maintenance.

Security policycaution

No security policy was found, leaving vulnerability-reporting and maintenance expectations undocumented. This is a transparency gap, though the package has no evidence here of active security-sensitive workflows.

Version stabilitycaution

Version 0.3.3 is not marked prerelease, but it remains below a stable major version, so API stability is less certain than for a mature 1.x release.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Tino Ehrich

Direct Dependencies

DependencyLast ReleaseScore
simplon/helper
Version 0.11.*
—
—

Weekly Downloads

Info

Last Published
10 years ago
Created
11 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform