Package Health

blesta/language

This release appears generally suitable to depend on: it is not deprecated, uses a stable major version, has a recent release, includes a license file, has an active and correctly matched source repository, and is backed by an organization. The main concerns are limited recent development activity—one commit by one contributor in the last three months—along with no repository security policy, no security scanning, and no tests or changelog in either the artifact or repository. The package is a large language-resource bundle, so the absence of tests is less concerning than it would be for executable logic, but maintenance and transparency remain somewhat thin.

Latest 6.0.2PackagistPackagist

78%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

70

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

83

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

90

Health Score Breakdown

Package scaffoldingcaution

The package includes a README, while tests and a changelog are absent from both the artifact and repository. For a language-resource bundle this is partly expected, but the lack of a changelog still modestly limits release transparency.

Repo bus factorcaution

All recent commits came from one contributor, giving the repository a concentrated short-term bus factor. Organization ownership provides some handoff capacity, but no second active contributor is shown.

Repo commit activitycaution

Only one commit was recorded in the last three months, from one active maintainer. The recent commit cadence is low, although it is consistent with the package having a recent release and may reflect its resource-bundle nature.

Repo issue activitycaution

There are no open issues and four open pull requests, but no issues or pull requests were merged in the last month. The absence of recent integration activity is a modest maintenance concern.

Repo popularitycaution

The repository has only four stars, seven forks, and five watchers. This indicates a small user and contributor footprint, but popularity is supporting evidence and does not by itself make a focused localization package unhealthy.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Phillips Data, Inc.

Direct Dependencies

No direct dependencies.

Weekly Downloads

Info

Last Published
24 days ago
Created
2 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform