Package Health

b13/memolist

The compact artifact has clear consumer documentation and a simple dependency surface. Recent release activity is present, but the repository shows no commits in the last three months and has no security policy.

Latest 4.1.0PackagistPackagist

64%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

75

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

88

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Health Score Breakdown

Licensecaution

The artifact includes a LICENSE.txt file and declares GPL-2.0-or-later, so licensing is transparent. The detected GPL-2.0 text is narrower than the manifest declaration, creating a minor inconsistency.

Repo commit activitycaution

The repository recorded zero commits and zero active maintainers during the last three months. That is meaningful evidence of thin recent maintenance, although the current release shows the project has not been fully abandoned.

Repo toolingcaution

Composer is used for the build, providing expected ecosystem tooling. No security scanning tools are configured, which leaves a modest transparency and maintenance gap.

Security policycaution

The repository has no security policy. This does not show a vulnerability, but it reduces transparency about how security issues are reported and handled.

Workflow auditcaution

No GitHub Actions workflows were present, so there are no workflow findings or unsafe permissions to weigh. This also means automated build and security checks are not evidenced by this signal.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

DependencyLast ReleaseScore
typo3/cms-core
Version ^13.0 || ^14.0
—
—

Weekly Downloads

Info

Last Published
5 days ago
Created
7 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform