Package Health

youwe/pimcore5deployment

The detailed README, matching repository, MIT declaration, and lack of install-time scripts make the package transparent to inspect. Its single-star repository and missing security policy provide little additional assurance for future maintenance.

Latest 0.16PackagistPackagist

35%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

72

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Release historydanger

The latest release was published in October 2018, with no releases in the last 12 months despite a package age of about 8 years. This strongly indicates abandonment risk, although the registry does not mark the package deprecated.

Repo commit activitydanger

There were zero commits and zero active maintainers in the last 3 months, consistent with the last push occurring in October 2018. This is strong evidence that maintenance has stopped.

Repo popularitycaution

The repository has 1 star and no forks, so there is little public evidence of broad adoption or community support. Popularity is only supporting evidence, so this remains a moderate concern.

Repo toolingcaution

Composer is used as the build tool, but no security scanning tools are configured. That weakens repository hygiene, though it is secondary to the much larger maintenance concern.

Security policycaution

The repository has no security policy. This reduces transparency about vulnerability reporting and response, especially for an extension that handles deployment and credential-related operations.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Youwe

Direct Dependencies

DependencyLast ReleaseScore
pimcore/core-version
Version >=5.1.0

Weekly Downloads

Info

Last Published
7 years ago
Created
8 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform