Package Health

carbon/gulp

The MIT license, README, repository tests, and release notes provide useful transparency for existing users. New projects should use carbon/pipeline instead, as the release identifies it as the successor.

Latest 7.5.6PackagistPackagist

15%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

57

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Using this package? Scan for Free

Health Score Breakdown

Registry deprecationdanger

Packagist marks the entire package as abandoned and names carbon/pipeline as its replacement, directly indicating that this package should no longer receive new adoption.

Release historydanger

The package has 120 releases, but its latest release was over five years ago and it has had no releases in the last 12 months, indicating abandonment.

Repo commit activitydanger

There were no commits and no active maintainers in the last three months, consistent with the archived and abandoned status.

Repository archiveddanger

The linked repository is archived and was last pushed over five years ago, so active maintenance and issue response should not be expected.

Security policycaution

The repository has no security policy. This is a transparency gap, though the stronger abandonment signals already determine the assessment.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Jon Uhlmann

Direct Dependencies

DependencyLast ReleaseScore
neos/composer-plugin
Version ^1.0.6|^2.0.0
—
—

Weekly Downloads

Info

Last Published
5 years ago
Created
8 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform