Package Health

tourze/question-bank-bundle

The README, tests, and MIT licensing make adoption easier. The repository is not archived and was pushed after the release, but there is little release history and all four workflow actions are unpinned.

Latest 0.0.1PackagistPackagist

67%

Total Score

Dependencies
Dependencies
Evaluates the health and security of package dependencies

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

75

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Health Score Breakdown

Dependency profilecaution

The package declares 29 runtime dependencies across Symfony, Doctrine, EasyAdmin, and several related bundles. This broad dependency surface increases integration and update burden for consumers.

Release historycaution

The package is 315 days old but has only one release, with one release in the last 12 months. That limited history provides little evidence of established release maintenance.

Repo popularitycaution

The repository has 0 stars, forks, and watchers. Popularity is only supporting evidence, so this adds limited confidence but is not by itself a health verdict for a focused package.

Repo toolingcaution

Composer build tooling is present, but no security scanning tools are reported. For a PHP library this is a modest repository hygiene gap rather than a severe health problem.

Security policycaution

The repository has no SECURITY.md or other reported security policy. This weakens maintenance transparency for a package handling application data, though it does not make the release unfit by itself.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

DependencyLast ReleaseScore
symfony/uid
Version ^7.3
—
—
doctrine/orm
Version ^3.0
—
—
symfony/yaml
Version ^7.3
—
—
doctrine/dbal
Version ^4.0
—
—
symfony/config
Version ^7.3
—
—

Weekly Downloads

Info

Last Published
11 months ago
Created
11 months ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform