Package Health

typo3/cms-styleguide

This release appears to be a healthy dependency: it has a long release history dating back to 2015, 31 releases in the last 12 months, a stable non-prerelease version, active and diverse recent repository contributions, organizational backing from TYPO3-CMS, and no deprecation or archive status. The package is properly licensed and has a clear artifact structure; the absence of packaged tests and a changelog is compensated by repository tests and GitHub Releases. The main transparency concern is that the linked repository neither matches the package name exactly nor mentions the package in its README, and the repository has no security policy, but these do not outweigh the strong maintenance and project-backing evidence.

Latest v14.3.7PackagistPackagist

88%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

90

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

89

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

90

Health Score Breakdown

Repo issue activitycaution

There were no new or closed issues or pull requests in the last month, and issue counts are unavailable; this is limited evidence and mildly reduces observability, but is outweighed by recent commits and releases.

Repo package mentioncaution

The repository name does not match the package name and its README does not mention the package, creating a transparency concern about the exact package-to-repository relationship; organizational backing and the substantial matching styleguide implementation partly mitigate this concern.

Repo toolingcaution

Composer build tooling is present. No security scanning tools were detected, which is a hygiene gap, but it is not sufficient on its own to indicate poor package health.

Security policycaution

The repository has no security policy, which reduces vulnerability-reporting transparency and is a genuine but limited governance gap.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

TYPO3 Core Team

Direct Dependencies

DependencyLast ReleaseScore
typo3/cms-core
Version 14.3.7

Weekly Downloads

Info

Last Published
13 days ago
Created
10 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform