Package Health

appserver-io/stomp-mq-adapter

A small, tested package with a README, declared license, and no install scripts is easier to inspect. Its beta status and one-person publishing base add little reassurance for a dependency this old.

Latest v0.9-betaPackagistPackagist

38%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

0

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

63

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

100

Health Score Breakdown

Release historydanger

The package has had no releases in about 11 years, with all four releases concentrated within days in March 2015. That strongly indicates abandonment risk despite the early release activity.

Repo commit activitydanger

There were no commits or active maintainers in the last three months, consistent with a project that has been inactive for years. This is a major maintenance concern.

Repo package mentioncaution

The repository name does not match the package name and its README does not mention the package. This raises concern that the linked source may not actually represent this release.

Repo popularitycaution

The repository has one star, one fork, and one watcher. Low popularity is not decisive for a small package, but it provides little evidence of a broader support community.

Repository archivedcaution

The linked repository is not archived, which is a positive sign, but its last push was about 10 years ago and does not offset the inactivity shown elsewhere.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Lars Roettig

Direct Dependencies

DependencyLast ReleaseScore
psr/log
Version ~1.0
appserver-io/lang
Version ~1.0
appserver-io/server
Version ~1.0
appserver-io-psr/epb
Version ~1.0
appserver-io-psr/mop
Version ~1.0

Weekly Downloads

Info

Last Published
11 years ago
Created
11 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform