Package Health

tangible/doctrine

This is a generally healthy, actively maintained early-stage package: it has released seven versions over 194 days, was updated within the assessment period, is backed by the TangibleInc organization, and shows recent commits from two maintainers. The repository and artifact include tests, the package is not deprecated or archived, and it has a declared GPL-2.0-only license with no install-time lifecycle scripts. Adoption carries moderate caution because it remains on the 0.x line, has no README or changelog, has no security policy or security-scanning tooling, and recent commits are concentrated 75% with one contributor; however, the organization backing and second active contributor reduce the abandonment concern.

Latest 0.1.6PackagistPackagist

78%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

100

Dependencies
Dependencies
Evaluates the health and security of package dependencies

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

78

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

90

Health Score Breakdown

Dependency profilecaution

Seven runtime dependencies, including Doctrine and Symfony components, create a meaningful dependency surface that should be monitored, but the profile is coherent for a Doctrine integration package.

Package scaffoldingcaution

Tests are present both in the artifact and repository, which supports maintainability; the missing README and changelog reduce transparency but are not severe given the repository's concrete source and test coverage.

Repo popularitycaution

The repository has zero stars, forks, and watchers, which provides little external validation; this is supporting evidence only and is outweighed by recent releases and commits.

Repo toolingcaution

Composer build tooling is present, supporting reproducible project structure, but no security-scanning tools are configured, leaving a security-hygiene gap.

Security policycaution

No repository security policy is present, which weakens vulnerability-reporting transparency for downstream users.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Team Tangible

Direct Dependencies

DependencyLast ReleaseScore
doctrine/orm
Version ~3.5.3
doctrine/dbal
Version ~3.8
symfony/cache
Version ~6.4.31
symfony/serializer
Version ^7.3.4
doctrine/migrations
Version ~3.9

Weekly Downloads

Info

Last Published
20 days ago
Created
7 months ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform