Package Health

19js/sitemap

The package is small and clearly identified, with a readable example and no install-time scripts. Its three runtime dependencies and lack of tests leave limited evidence for change safety.

Latest v1.0.0PackagistPackagist

48%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

0

Dependencies
Dependencies
Evaluates the health and security of package dependencies

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

79

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

83

Health Score Breakdown

Release historydanger

Only one release exists, published on 7 February 2021, with no releases in the following five years and seven months. This is strong evidence of abandonment risk, though the stable version may be intentionally finished.

Repo commit activitydanger

The repository recorded zero commits and zero active maintainers in the last three months, consistent with the long release gap. No newer maintenance activity compensates for this.

Dependency profilecaution

The package declares three runtime dependencies and no development dependencies. The dependency count is manageable, but the absence of development tooling provides little evidence of tested or controlled changes.

Repo toolingcaution

Composer is used for builds, which is appropriate, but no security scanning tools are configured. This reduces ongoing supply-chain oversight.

Security policycaution

The linked repository has no security policy, leaving no documented process for reporting or handling vulnerabilities. The package's small scope limits the severity of this gap but does not remove it.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

19js

Direct Dependencies

DependencyLast ReleaseScore
psr/log
Version ^1.1
—
—
monolog/monolog
Version ^2.2
—
—
jaeger/querylist
Version ^4.2
—
—

Weekly Downloads

Info

Last Published
5 years ago
Created
5 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform