Package Health

zrcms/core

ZRCMS - Content management for version tracking and content

Latest 1.0.0PackagistPackagist

38%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

63

Dependencies
Dependencies
Evaluates the health and security of package dependencies

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

70

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Release historydanger

The package has only two releases, with none in the last 12 months, and the latest was about eight years ago. This is strong evidence of abandonment risk for a dependency.

Repo commit activitydanger

There have been zero commits and zero active maintainers in the last three months, with the repository last pushed about eight years ago. This is the strongest evidence that maintenance has stopped.

Dependency profilecaution

The package declares 18 runtime dependencies, creating a substantial dependency surface for an unmaintained release. No provided signal shows that this surface is actively managed.

Package scaffoldingcaution

A README is present, and the absence of tests or a changelog in the published artifact is normal packaging practice. The short 114-character README limits consumer documentation, but this is secondary to the maintenance gap.

Repo issue activitycaution

There are no open issues or pull requests and no recent issue or pull-request activity. While a clean tracker can be benign, here it is consistent with the absence of ongoing project activity.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Rod McNew
James Jervis

Direct Dependencies

DependencyLast ReleaseScore
reliv/json
Version ^0
—
—
rcm/api-lib
Version ~0.10
—
—
reliv/locale
Version ^0
—
—
psr/container
Version ^1
—
—
reliv/mustache
Version ^0
—
—

Weekly Downloads

Info

Last Published
8 years ago
Created
9 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform