Package Health

sunnysideup/ecommerce_googleanalytics

Licensing and documentation are clear, with repository tests and a modest dependency surface. The single maintainer and absent security tooling leave less review capacity.

Latest 1.3.5PackagistPackagist

38%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

25

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

75

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Release historydanger

The latest release was published in May 2018, and there were no releases in the last 12 months despite the package being over 10 years old. This is strong evidence that maintenance has stopped.

Repo commit activitydanger

The repository recorded zero commits and zero active maintainers in the last 3 months, consistent with the long release gap and increasing abandonment risk.

Repo issue activitycaution

There were no new or closed issues in the last month, while four pull requests remain open. This suggests little current project activity, though it is weaker evidence than the release and commit history.

Repo popularitycaution

The repository has zero stars, one fork, and one watcher. Popularity is only supporting evidence, but these figures provide little external evidence of active community support.

Repo toolingcaution

Composer is used for builds, which is appropriate, but no security scanning tools are configured. That is a modest transparency and maintenance gap rather than a severe risk by itself.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Nicolaas Francken

Direct Dependencies

DependencyLast ReleaseScore
silverstripe/cms
Version ~2.4
—
—
sunnysideup/ecommerce
Version ~2.4
—
—
silverstripe/framework
Version ~2.4
—
—

Weekly Downloads

Info

Last Published
8 years ago
Created
10 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform