Package Health

caendesilva/pikoserve

The package is tiny and transparent, with a matching repository, clear licensing, release notes, and a security policy. Its single-maintainer project has had no release or commit activity since April 2022, making future fixes uncertain.

Latest v1.1.0PackagistPackagist

48%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

25

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

78

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

100

Health Score Breakdown

Release historydanger

The package has had no release in more than four years, and all four releases arrived within a very short initial period. This strongly suggests the project is no longer actively maintained.

Repo commit activitydanger

The repository recorded zero commits and zero active maintainers in the last three months, consistent with the release history showing prolonged inactivity. No provided signal shows current maintenance capacity.

Maintainerscaution

Only one registry maintainer is listed, which creates a thin publishing base. The project is user-owned rather than organization-backed, so there is no shown organizational capacity to offset that concentration.

Repo popularitycaution

The repository has zero stars and forks and only one watcher. Popularity is supporting evidence rather than a verdict, but these counts provide little evidence of a broad community that could sustain the package.

Repo toolingcaution

Composer is used as the build tool, which fits the Packagist package. No security scanning tool is present, a minor hygiene gap that does not outweigh the clearer maintenance concern.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Caen De Silva

Direct Dependencies

No direct dependencies.

Weekly Downloads

Info

Last Published
4 years ago
Created
4 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform