Package Health

vyse/framework

Its MIT licensing and included test suite provide a useful baseline. The organization-backed repository is not archived, but the package-to-repository link is unclear and maintenance activity is unproven.

Latest v1.0.4PackagistPackagist

55%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

75

Dependencies
Dependencies
Evaluates the health and security of package dependencies

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

79

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Health Score Breakdown

Dependency profilecaution

The package declares 26 runtime dependencies and no separate development dependencies, including substantial Symfony, Doctrine, and tooling components. This broad runtime surface increases upgrade and maintenance coupling.

Release historycaution

Five releases were published over roughly two weeks, with a median interval of about two days. This shows initial release activity, though the short history limits evidence of long-term maintenance.

Repo commit activitycaution

The repository recorded zero commits and zero active maintainers in the last three months. Because the package is only about five months old, this is concerning but not conclusive proof of abandonment.

Repo package mentioncaution

The repository name does not match vyse/framework and its README does not mention the package. This raises uncertainty about whether the linked source repository actually belongs to this release.

Repo toolingcaution

Composer build tooling is present, but no security-scanning tooling was detected. This is a transparency and maintenance gap rather than a severe risk on its own.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Andy Fletcher

Direct Dependencies

DependencyLast ReleaseScore
doctrine/orm
Version ^3.6
—
—
symfony/flex
Version ^2.4
—
—
symfony/yaml
Version ^8.0
—
—
symfony/dotenv
Version ^8.0
—
—
vyse/toolchain
Version ^1.0
—
—

Weekly Downloads

Info

Last Published
5 months ago
Created
5 months ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform