Package Health

brunonatali/communication

The MIT license, focused eight-file tree, and lack of install-time scripts reduce avoidable adoption friction. The absence of tests, documentation, and a security policy leaves limited evidence for safe long-term maintenance.

Latest v0.1PackagistPackagist

42%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

0

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

60

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Release historydanger

This package has only one release, published over six years ago, with no releases in the last 12 months. That is strong evidence of abandonment risk for a dependency.

Repo commit activitydanger

There have been zero commits and zero active maintainers in the last three months, consistent with the package's long release silence. This materially increases abandonment risk.

Package scaffoldingcaution

The artifact has no README, tests, or changelog, while the repository also reports no tests or changelog. The small focused file tree makes the missing tests less decisive, but the missing consumer documentation remains a real gap.

Security policycaution

The repository has no security policy, leaving no documented route for reporting vulnerabilities or explaining security handling. This is a transparency gap, though it is secondary to the maintenance evidence.

Version stabilitycaution

The only available version is v0.1, so the project has not demonstrated a mature stable release line. Its age and unchanged version make this more concerning than a newly published early release.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

DependencyLast ReleaseScore
brunonatali/tools
Version 0.2

Weekly Downloads

Info

Last Published
6 years ago
Created
6 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform