Package Health

whatwedo/crud-bundle

The repository still has build and security tooling, and the package includes tests and documentation. Prefer the listed replacement, araise/crud-bundle, rather than adopting this abandoned release.

Latest v0.5.0PackagistPackagist

38%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

67

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

67

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Health Score Breakdown

Registry deprecationdanger

Packagist marks the package abandoned at package scope and names araise/crud-bundle as its replacement. This is a strong adoption risk even though the repository remains available.

Release historydanger

The package has had 34 releases since January 2017, but none in the last 12 months and its latest release was in March 2023. That release gap materially raises abandonment risk.

Repo bus factorcaution

All 2 recent commits came from one contributor, so current maintenance depends on a single active person. Organization backing provides some handoff capacity, but no second recent contributor is shown.

Repo commit activitycaution

The repository recorded 2 commits in the last 3 months, showing some recent activity despite the stale registry release. The activity is too limited to offset the package-level abandonment status.

Security policycaution

The linked repository has no security policy, leaving vulnerability reporting and response expectations undocumented. This is a transparency gap for a framework bundle.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Ueli Banholzer
Felix Imobersteg
Nicolo Singer

Direct Dependencies

DependencyLast ReleaseScore
symfony/form
Version ~4.0|~5.0
phpspec/prophecy
Version ~1.0
symfony/serializer
Version ~4.0|~5.0
symfony/http-kernel
Version ~4.0|~5.0
symfony/twig-bundle
Version ~4.0|~5.0

Weekly Downloads

Info

Last Published
3 years ago
Created
9 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform