Package Health

voopite/lumen-keycloak-client

Simple Keycloak Client Lumen microservices Client Credentials authenticate

Latest 1.0.0-rc4PackagistPackagist

42%

Total Score

unhealthy

Risky: no release since 2022 and still a release candidate.

Health Score Breakdown

Release historydanger

The package has had no release in about 3 years and 10 months, with zero releases in the last 12 months. Four releases were concentrated around its initial publication, indicating substantial abandonment risk.

Lifecycle scriptscaution

A post-autoload-dump Composer lifecycle script is present. This is a routine install-time hook, but it adds execution surface compared with a package without lifecycle scripts.

Maintainerscaution

Only one registry account has publish access, which is a limited publishing base. The organization-owned repository provides some backing, so this is not by itself a severe concern.

Package scaffoldingcaution

The artifact includes a README, but it is only 24 characters and provides no usable integration guidance. Missing tests and a changelog are normal packaging practice, while the absent release notes provide no additional transparency.

Repo issue activitycaution

There are no open issues or pull requests and no recent issue or pull request activity. While this avoids an unresolved backlog, it does not demonstrate active maintenance.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Ibson Machado

Direct Dependencies

DependencyLast ReleaseScore
firebase/php-jwt
Version ^6.3
—
—
guzzlehttp/guzzle
Version ^7.5
—
—
voopite/lumen-environment-editor
Version ^1.0@RC
—
—

Weekly Downloads

Info

Last Published
3 years ago
Created
3 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform