Package Health

yiisoft/app-console

Tests, release notes, and a security policy make the project straightforward to evaluate and maintain. Five of eight workflow actions are unpinned, but two active contributors and read-only permissions limit the concern.

Latest 1.0.2PackagistPackagist

82%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

94

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

88

Health Score Breakdown

Release historycaution

Only three releases have been published over about 27 months, with one release in the last 12 months and a median interval of about nine months. Recent repository work partly compensates, but the registry cadence is slow.

Workflow auditcaution

All six workflows were analyzed, use read-only permissions, and had no audit findings or untrusted checkout/script-injection paths. However, five of eight action references are unpinned, leaving a meaningful but limited reproducibility and supply-chain hygiene gap.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

DependencyLast ReleaseScore
yiisoft/log
Version ^2.2
—
—
yiisoft/aliases
Version ^3.1.1
—
—
vlucas/phpdotenv
Version ^5.6.2
—
—
yiisoft/yii-console
Version ^2.4.2
—
—
yiisoft/log-target-file
Version ^3.1
—
—

Weekly Downloads

Info

Last Published
9 months ago
Created
2 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform