Package Health

xp-forge/frontend

Web Frontends

Latest v7.4.0PackagistPackagist

68%

Total Score

caution

Usable with caveats: recent maintenance is thin and all workflow actions are unpinned.

Health Score Breakdown

Repo bus factorcaution

All recent commit activity comes from one contributor, leaving maintenance dependent on a single active developer; organization ownership provides some handoff capacity but does not remove the concentration.

Repo commit activitycaution

Only 1 commit was recorded in the last 3 months, which is a thin maintenance signal despite the recent release history.

Repo toolingcaution

Composer build tooling is present, but no security-scanning tool was detected, leaving a modest transparency and maintenance gap.

Security policycaution

The repository has no security policy, making vulnerability-reporting expectations less clear for consumers.

Workflow auditcaution

The single workflow was fully analyzed with no dangerous triggers or audit findings, but all 3 referenced actions are unpinned, weakening build reproducibility.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

DependencyLast ReleaseScore
xp-forge/web
Version ^4.2
—
—
xp-forge/json
Version ^6.0 | ^5.0
—
—
xp-framework/core
Version ^12.0 | ^11.0 | ^10.0
—
—
xp-framework/http
Version ^11.0 | ^10.0 | ^9.0
—
—
xp-forge/compression
Version ^2.0 | ^1.0
—
—

Weekly Downloads

Info

Last Published
5 months ago
Created
8 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform