Package Health

3neti/form-flow

This release appears suitable to depend on, with strong evidence of active maintenance and good project hygiene: 51 stable releases in about 252 days, recent repository activity, tests, changelog, documentation, an MIT license, a security policy, and a repository that clearly matches the package. The main concerns are the very small user-facing footprint, a two-contributor repository with 90.6% of recent commits from one contributor, and the absence of repository security-scanning tools; these increase continuity and assurance risk but do not outweigh the package's recent activity and substantial scaffolding.

Latest v1.9.25PackagistPackagist

83%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

60

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

89

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

100

Health Score Breakdown

Maintainerscaution

Only one account has registry publish access, which creates publishing continuity risk. However, the linked repository shows two active maintainers, so this is a caution rather than a severe health issue.

Project backingcaution

The repository is owned by a user rather than an organization, so there is no organization-level maintenance handoff signal. This makes the observed contributor concentration more relevant, although recent activity remains strong.

Repo bus factorcaution

Recent work is concentrated in two contributors, with the top contributor responsible for 90.625% of commits. The second contributor remains active, but the high concentration leaves a meaningful continuity risk for this user-owned project.

Repo issue activitycaution

There are no open issues or pull requests and no issue or pull-request activity in the last month. This is not inherently negative for a small package, but it provides little evidence of an active user community.

Repo popularitycaution

The repository has zero stars, forks, and watchers. Popularity is supporting evidence rather than a verdict, but these values provide no external adoption signal and modestly reduce confidence in maturity.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Lester Hurtado

Direct Dependencies

DependencyLast ReleaseScore
symfony/yaml
Version ^7.4
—
—
illuminate/support
Version ^11.0 || ^12.0 || ^13.0
—
—
spatie/laravel-data
Version ^4.0
—
—

Weekly Downloads

Info

Last Published
1 month ago
Created
9 months ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform