Package Health

buzzmoody/sharkordbot

Documentation is present and this release has published notes, but the project shows little evidence of ongoing support. Packagist marks the package abandoned and points to buzzmoody/sharkordphp; the linked repository also does not identify this package.

Latest 3.1.0PackagistPackagist

15%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

0

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

75

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Using this package? Scan for Free

Health Score Breakdown

Registry deprecationdanger

Packagist marks the entire package abandoned and names buzzmoody/sharkordphp as its replacement, making this release unsuitable as a new dependency despite other healthy metadata.

Repo commit activitydanger

The repository recorded 0 commits and 0 active maintainers in the last 3 months, which is strong evidence of stalled maintenance for a young package.

Repo package mentioncaution

The repository name does not match the package name and its README does not mention the package, so the source linkage is not clearly established.

Security policycaution

The repository has no security policy, leaving disclosure and response expectations undocumented; this is a transparency gap alongside the maintenance concerns.

Workflow auditcaution

All 6 analyzed action references are unpinned, and one workflow grants top-level write permissions; the audit found no untrusted checkout or script-injection path, limiting this to workflow hygiene risk.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

DependencyLast ReleaseScore
react/http
Version ^1.11
—
—
ratchet/pawl
Version ^0.4.3
—
—
monolog/monolog
Version ^3.10
—
—
elvanto/litemoji
Version ^5.2.0
—
—
react/event-loop
Version ^1.6
—
—

Weekly Downloads

Info

Last Published
6 months ago
Created
7 months ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform