Package Health

suvera/winter-boot

Winter Boot Framework

Latest 2.1.7PackagistPackagist

74%

Total Score

caution

Eight releases in the last year show active maintenance, but all recent commits come from one contributor.

Health Score Breakdown

Dependency profilecaution

The framework declares 16 runtime dependencies, including several extensions and observability or networking components; this is a meaningful integration surface, though reasonable for a microservices framework.

Project backingcaution

The repository is owned by a user account rather than an organization, so there is no provided organizational backing to compensate for the concentrated contributor base.

Repo bus factorcaution

All 42 recent commits came from one contributor, creating a material single-maintainer continuity risk despite the active commit rate.

Repo toolingcaution

Composer build tooling is present, but no security-scanning tools were detected, leaving a modest transparency and maintenance gap.

Security policycaution

The repository has no security policy, so vulnerability reporting and response expectations are not documented.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Suvera

Direct Dependencies

DependencyLast ReleaseScore
ramsey/uuid
Version ^4.7
—
—
symfony/yaml
Version 5.4.x-dev || ^5.4 || ^6.0 || ^7.0
—
—
monolog/monolog
Version ^2.3.5 || ^3.0
—
—
php-http/httplug
Version 2.x-dev
—
—
swoole/ide-helper
Version @dev
—
—

Weekly Downloads

Info

Last Published
1 day ago
Created
5 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform