Package Health

zikula/hook-bundle

Its MIT declaration, complete README, and repository tests support transparency. The project has no security policy or scanning, and its 11 runtime dependencies add maintenance surface. The archived, abandoned project should not be adopted for new dependencies.

Latest 3.1.0PackagistPackagist

8%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

0

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

42

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Using this package? Scan for Free

Health Score Breakdown

Registry deprecationdanger

Packagist marks the entire package as abandoned, with no replacement identified. This is a direct warning against taking a dependency on this release.

Release historydanger

The latest release was published about 4 years and 9 months ago, and there were no releases in the last 12 months. This strongly indicates abandonment rather than a merely slow release cadence.

Repo commit activitydanger

The repository recorded zero commits and zero active maintainers in the last 3 months, consistent with its archived state and the package's abandonment warning.

Repository archiveddanger

The linked repository is archived and was last pushed about 4 years and 5 months ago, indicating the source is no longer actively maintained.

Repo toolingcaution

Composer build tooling is present, but no security-scanning tools were detected. That leaves a modest supply-chain hygiene gap in an otherwise inactive project.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Zikula Team

Direct Dependencies

DependencyLast ReleaseScore
symfony/form
Version ^5.4
—
—
symfony/string
Version ^5.4
—
—
symfony/contracts
Version ^2.3
—
—
symfony/validator
Version ^5.4
—
—
zikula/core-bundle
Version 3.1.0
—
—

Weekly Downloads

Info

Last Published
4 years ago
Created
6 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform