Package Health

wexample/symfony-file

Usable with caveats: this is a very new package with only 14 days of history and all recent commits from one contributor. It has active development, organization backing, a clear README, and no deprecation or install scripts, but lacks tests and repository security scanning.

Latest 4.0.0PackagistPackagist

68%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

83

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

88

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

83

Health checks

Release historycaution

The package is only 14 days old with four releases, so its maintenance record and compatibility history are still limited. Recent publishing activity is encouraging but cannot yet demonstrate long-term stability.

Repo bus factorcaution

All 12 recent commits came from one contributor, leaving a meaningful continuity risk. Organization ownership provides some ability to hand maintenance off, but no second active contributor is shown.

Repo toolingcaution

Composer build tooling is present, but no security scanning tools were detected. That weakens project transparency and automated risk detection, though it does not by itself make the package unfit.

Security policycaution

The repository has no security policy, leaving vulnerability reporting and response expectations undocumented. This is a maintenance and transparency gap for a package that exposes file-system functionality.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

weeger

Direct Dependencies

DependencyLast ReleaseScore
symfony/uid
Version >=6.2
wexample/php-file
Version >=2.0.0
wexample/symfony-api
Version >=5.0.0
wexample/php-pseudocode
Version >=1.0.0
wexample/symfony-helpers
Version >=8.0.0

Weekly Downloads

Info

Last Published
6 hours ago
Created
14 days ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform