Package Health

timerlau/phystrix

Risky to adopt: the package has had no release or repository activity for about eight years, leaving compatibility and maintenance concerns. It has useful tests, documentation, licensing, and a matching source repository, but those strengths do not offset the apparent abandonment risk.

Latest v2.1.0PackagistPackagist

42%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

25

Dependencies
Dependencies
Evaluates the health and security of package dependencies

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

72

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

88

Health Score Breakdown

Release historydanger

The latest release was published in April 2018, with no releases in the last 12 months; this is strong evidence that the package is no longer actively maintained.

Repo commit activitydanger

The repository recorded zero commits and zero active maintainers in the last three months, reinforcing the risk that important defects or compatibility issues will not be addressed.

Dependency profilecaution

The package has four runtime dependencies, including PHP, APCu, and two Zend Framework components; this is a moderate dependency footprint, though the age of the project raises compatibility concerns.

Project backingcaution

The registry namespace and repository owner match, but both identify an individual account rather than an organization, so there is no broader organizational backing shown.

Repo popularitycaution

The repository has zero stars and forks and only one watcher, providing little supporting evidence of an active community or broad maintenance base.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

DependencyLast ReleaseScore
zendframework/zend-di
Version ~2.2
zendframework/zend-config
Version ~2.2

Weekly Downloads

Info

Last Published
8 years ago
Created
12 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform