Package Health

symplify/astral

Its MIT license and lack of install scripts reduce avoidable risk. The mature release history and stable versioning provide useful context, but transparency is limited.

Latest 11.1.5PackagistPackagist

15%

Total Score

Dependencies
Dependencies
Evaluates the health and security of package dependencies

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

50

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

100

Using this package? Scan for Free

Health Score Breakdown

Registry deprecationdanger

Packagist marks the entire package as abandoned and recommends nikic/php-parser, making continued dependency adoption a severe lifecycle risk.

Release historydanger

The package has 240 releases since December 2020, but the latest was in August 2022 and there were no releases in the last four years, indicating abandonment rather than active maintenance.

Dependency profilecaution

The package declares six runtime dependencies, including phpstan/phpstan and nikic/php-parser, so consumers inherit a relatively broad dependency surface for a library of this kind.

Package scaffoldingcaution

The artifact contains no README, while repository documentation could not be checked; for a PHP library, this weakens consumer guidance and transparency.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

DependencyLast ReleaseScore
nette/utils
Version ^3.2
phpstan/phpstan
Version ^1.8.1
nikic/php-parser
Version ^4.14.0
phpstan/phpdoc-parser
Version ^1.7.0
symplify/package-builder
Version ^11.1.5

Weekly Downloads

Info

Last Published
4 years ago
Created
5 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform