Package Health

zeroseven/z7-blog-comments

Its organization backing, package README, and stable release version provide useful context for adoption. There is no security policy or repository security scanning, so maintenance controls are limited.

Latest v1.1.1PackagistPackagist

42%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

63

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Health Score Breakdown

Release historydanger

The latest release was January 13, 2021, about 5 years and 8 months before collection, with no releases in the last 12 months. Sixteen releases show earlier activity, but the long current gap is strong abandonment evidence.

Repo commit activitydanger

The repository recorded no commits or active maintainers in the last 3 months, and its last push was November 28, 2022, nearly 4 years before collection. The linked project is not archived, but current maintenance activity is absent.

Repo toolingcaution

Composer build tooling is present, which supports reproducible package management, but no security scanning tools are configured. The tooling is adequate for packaging while leaving security oversight weaker.

Security policycaution

The repository has no security policy, leaving vulnerability reporting and maintenance expectations undocumented. This is a meaningful transparency gap for an extension handling comments and notifications.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

zeroseven design studios GmbH
Raphael Thanner

Direct Dependencies

DependencyLast ReleaseScore
typo3/cms-core
Version ^9.5 || ^10.4
typo3/cms-form
Version ^9.5 || ^10.4
zeroseven/z7-blog
Version ^1.0 || ^1.1
patrickschur/language-detection
Version ^4.0

Weekly Downloads

Info

Last Published
5 years ago
Created
6 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform