Package Health

cdk-comp/carbon-field-toggler

It includes a clear README, a single runtime dependency, and no install-time scripts. The conflicting license evidence and lack of recent maintenance reduce confidence in continued support and clean reuse.

Latest v1.0.7PackagistPackagist

43%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

75

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

75

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

83

Health Score Breakdown

Release historydanger

The package has made no releases in more than seven years, despite having eight releases overall. This is strong evidence of abandonment risk for a dependency tied to an evolving ecosystem.

Licensecaution

The manifest declares MIT, but the artifact license file is detected as GPL-3.0; although a license file exists, the mismatch creates legal uncertainty for adopters.

Repo commit activitycaution

The repository recorded zero commits and zero active maintainers in the last three months, consistent with the long release gap and indicating no visible current maintenance.

Repo popularitycaution

The repository has 9 stars and 1 fork, providing little community evidence to offset the lack of recent maintenance, though low popularity alone is not disqualifying.

Security policycaution

The repository has no security policy or security-scanning tools. For a small visual extension this is a modest transparency gap, but it leaves vulnerability-reporting practices unclear.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

DependencyLast ReleaseScore
htmlburger/carbon-fields
Version ^2.2.0
—
—

Weekly Downloads

Info

Last Published
7 years ago
Created
8 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform