Package Health

bingo-soft/jabe

Its MIT license, README, tests, and stable release history provide useful transparency. The project has no security policy or scanning, and its broad runtime dependency set adds maintenance overhead.

Latest v1.6.5PackagistPackagist

67%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Dependencies
Dependencies
Evaluates the health and security of package dependencies

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

94

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Dependency profilecaution

Seventeen runtime dependencies create a relatively broad dependency surface for a workflow engine, increasing the amount of upstream maintenance and compatibility risk to track.

Maintainerscaution

Only one registry account, Bingo-Soft, has publish access. This is a modest concern, though registry access alone does not establish the project's actual maintenance capacity.

Project backingcaution

The repository is owned by a personal GitHub account rather than an organization, so the concentrated recent activity has no demonstrated organizational handoff shown by the provided evidence.

Repo bus factorcaution

One contributor made all recent commits, leaving maintenance dependent on a single active developer and increasing continuity risk.

Repo commit activitycaution

Only two commits were recorded in the last three months, indicating limited recent development activity despite recent releases.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Bingo-Soft

Direct Dependencies

DependencyLast ReleaseScore
ramsey/uuid
Version ^4.2
—
—
bingo-soft/el
Version *
—
—
phpixie/image
Version ^3.3
—
—
bingo-soft/sax
Version *
—
—
bingo-soft/xml
Version ^1.0
—
—

Weekly Downloads

Info

Last Published
11 days ago
Created
5 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform