Package Health

vbcherepanov/jev-symfony-bundle

The package includes a clear license, a substantial README, repository tests, and automated security tooling. Its individual ownership and absent security policy provide less assurance about long-term support and incident handling.

Latest v0.1.1PackagistPackagist

62%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

86

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

83

Health Score Breakdown

Project backingcaution

The package and repository are owned by an individual account rather than an organization, so there is less visible institutional backing for continuity, though this is not evidence of abandonment by itself.

Release historycaution

Only two releases appeared within minutes, and the package is effectively one day old, so there is not enough history to establish a dependable maintenance pattern.

Repo commit activitycaution

No commits or active maintainers were observed in the last three months, but the repository is only about one day old, so this is primarily an unproven maintenance record rather than evidence of collapse.

Security policycaution

No security policy was found, leaving incident-reporting and vulnerability-response expectations undocumented for a package that makes network API calls.

Version stabilitycaution

Version 0.1.1 is not a stable major release, which signals an early API and maturity stage despite not being marked as a prerelease.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

DependencyLast ReleaseScore
psr/log
Version ^2.0 || ^3.0
—
—
symfony/clock
Version ^7.4 || ^8.0
—
—
symfony/config
Version ^7.4 || ^8.0
—
—
symfony/console
Version ^7.4 || ^8.0
—
—
symfony/http-client
Version ^7.4 || ^8.0
—
—

Weekly Downloads

Info

Last Published
4 days ago
Created
4 days ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform