Package Health

bear/stub-json

Fake BEAR.Resource responses with JSON files

Latest 0.1.0PackagistPackagist

61%

Total Score

caution

Usable with caveats: the package and linked repository names do not match, and maintenance has been sparse since its sole release.

Health Score Breakdown

Repo package mentiondanger

The repository name does not match bear/stub-json, and its README does not mention that package; the published README instead identifies the project as BEAR.FakeJson and shows a different install name. This raises a concrete concern that the repository may not belong to this release.

Lifecycle scriptscaution

The package runs post-install and post-update scripts, giving it execution during dependency operations. No provided signal shows these hooks are necessary or narrowly scoped.

Release historycaution

This is the sole release, published about 8 months ago, with no subsequent release activity. That limited history makes long-term maintenance harder to establish.

Repo commit activitycaution

The repository recorded zero commits and zero active maintainers in the last 3 months. With only one registry release, this provides weak evidence of ongoing maintenance.

Repo toolingcaution

Composer build tooling is present, but no security scanning tooling was detected. This is a modest transparency and maintenance gap rather than evidence that the package is unsafe.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Akihito Koriyama

Direct Dependencies

DependencyLast ReleaseScore
bear/resource
Version ^1.17
—
—

Weekly Downloads

Info

Last Published
9 months ago
Created
9 months ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform