Package Health

blemli/partysan

Consumer documentation and project structure are in good shape. The license declaration conflicts with the detected Unlicense, and all nine workflow actions are unpinned; active recent commits partly offset the package's short history.

Latest v0.2.0PackagistPackagist

67%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

79

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

67

Health Score Breakdown

Licensecaution

The manifest declares MIT, but the artifact license file is detected as Unlicense. Although both the artifact and repository contain license files, the mismatch reduces clarity for adopters.

Lifecycle scriptscaution

A post-autoload-dump install-time script runs during Composer installation. Such scripts expand installation behavior and deserve caution because the signal provides no evidence that the action is narrowly scoped.

Release historycaution

The package is only 55 days old and has two releases, with a median interval of about 12 days. That shows initial activity but provides limited evidence of long-term maintenance.

Security policycaution

The repository has no security policy. For a developer-facing package this is a transparency gap, though it is not evidence of abandonment by itself.

Version stabilitycaution

Version v0.2.0 is not a stable-major release, so its API and behavior may still change. It is not marked as a prerelease, which provides some compensating stability.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

blemli

Direct Dependencies

DependencyLast ReleaseScore
vlucas/phpdotenv
Version ^5.6
—
—
illuminate/contracts
Version ^11.0||^12.0||^13.0
—
—
joshembling/artisan-browse
Version ^0.0.7
—
—
spatie/laravel-package-tools
Version ^1.16
—
—

Weekly Downloads

Info

Last Published
1 month ago
Created
1 month ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform