Package Health

sunnysideup/webpack_theme

Clear licensing, documentation, source files, and repository tests make the package straightforward to understand. Its maintenance and security evidence are weak, so future compatibility and issue response are uncertain.

Latest 2.1.0PackagistPackagist

42%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

81

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Release historydanger

The package has had no releases in the last 12 months, and its latest release was in May 2018 after only five releases. This is strong evidence of abandonment risk.

Repo commit activitydanger

There were no commits or active maintainers in the last three months, and the repository was last pushed in May 2018. This strongly reinforces the abandonment concern.

Repo issue activitycaution

There were no new or closed issues or pull requests in the last month. With no recent commits either, the repository shows no current maintenance or support activity.

Repo toolingcaution

Composer is used as a build tool, but no security scanning tools are reported. That is a modest transparency and hygiene gap, not evidence that the package is unsafe.

Security policycaution

The repository has no published security policy, leaving vulnerability reporting and response expectations unclear. This adds a minor transparency gap alongside the older codebase.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Nicolaas Francken

Direct Dependencies

DependencyLast ReleaseScore
silverstripe/cms
Version ~3.6
—
—
sunnysideup/metatags
Version *
—
—
silverstripe/framework
Version ~3.6
—
—
sunnysideup/sswebpack_engine_only
Version *
—
—
sunnysideup/webpack_requirements_backend
Version *
—
—

Weekly Downloads

Info

Last Published
8 years ago
Created
9 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform