Package Health

voidagency/vactory-project

Project template for Vactory.

Latest 1.1.0PackagistPackagist

38%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

0

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

75

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Health Score Breakdown

Release historydanger

The package has only two releases, with none in the last five years and the latest published in February 2021. This is strong evidence of abandonment risk despite the stable release format.

Repo commit activitydanger

The repository recorded zero commits and zero active maintainers in the last three months, consistent with the long release gap and limited ongoing maintenance capacity.

Licensecaution

The package declares GPL-2.0-or-later and includes a license file, but artifact license detection also found MIT, Apache-2.0, and BSD-3-Clause text from bundled components. The mixed footprint warrants checking which license applies to the package and its included assets.

Lifecycle scriptscaution

The package runs six Composer install and update lifecycle scripts, including pre- and post-install hooks. These increase installation complexity and the amount of package code executed during dependency operations.

Security policycaution

The linked repository has no security policy, leaving no documented process for reporting or handling vulnerabilities. This is a transparency gap for a project template with substantial bundled content.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

VOID

Direct Dependencies

DependencyLast ReleaseScore
voidagency/vactory
Version ^2.1
—
—
composer/installers
Version ^1.2
—
—
drupal/core-recommended
Version 8.9.13
—
—
voidagency/vactory_theme
Version ^1.1
—
—
cweagans/composer-patches
Version ^1.6
—
—

Weekly Downloads

Info

Last Published
5 years ago
Created
6 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform