Package Health

webbuilders-group/silverstripe-packagistshortcode

The small contributor footprint and lack of security tooling reduce confidence in ongoing support. Clear ownership, licensing, documentation, and a recent release provide useful reassurance for this focused package.

Latest 2.1.0PackagistPackagist

65%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

75

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

81

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Release historycaution

The package has existed since 2013, but it has only seven releases and none in the last 12 months; the latest release was about 15 months ago. This indicates slow maintenance rather than abandonment on its own.

Repo commit activitycaution

The repository recorded no commits and no active maintainers in the last three months. The repository was pushed alongside the latest release, but current activity is still limited.

Repo popularitycaution

The repository has zero stars, one fork, and three watchers, so there is little public adoption evidence. Popularity is supporting evidence only, and the package's focused scope partly explains the small audience.

Repo toolingcaution

Composer is used for the build, but no security-scanning tools are present. The build setup supports reproducibility, while the missing scanning reduces maintenance hygiene.

Security policycaution

The repository has no security policy, leaving vulnerability-reporting expectations unclear. This is a transparency gap, though it is not by itself evidence that the package is unsafe.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Ed Chipman

Direct Dependencies

DependencyLast ReleaseScore
silverstripe/framework
Version ^4|^5|^6

Weekly Downloads

Info

Last Published
1 year ago
Created
12 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform