Package Health

unlikelysource/filecms-core

Healthy and actively maintained, with good release documentation, tests, and a clear source repository. The main concern is that all recent commits come from one contributor and the project has minimal adoption and no security policy.

Latest v0.3.23PackagistPackagist

78%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

75

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

83

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

88

Health Score Breakdown

Project backingcaution

The repository is owned by an individual rather than an organization, so the single-contributor maintenance risk is not offset by visible organizational backing.

Repo bus factorcaution

All 9 recent commits came from one contributor, creating a meaningful continuity risk for this user-owned project despite its active recent development.

Repo popularitycaution

The repository has only 1 star, 1 fork, and 1 watcher, so there is little independent adoption evidence; this lowers confidence in maturity but is not decisive for a small, actively maintained package.

Repo toolingcaution

Composer is used for builds, but no security scanning tool is reported. The build tooling is appropriate, while the lack of scanning leaves a modest transparency gap.

Security policycaution

The repository has no security policy, leaving reporting and response expectations unclear for a package that handles uploads, forms, and security-related functionality.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Doug Bierer

Direct Dependencies

DependencyLast ReleaseScore
phpmailer/phpmailer
Version >=6.1
—
—

Weekly Downloads

Info

Last Published
19 days ago
Created
4 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform