Package Health

christophwurst/kitinerary-bin

Clear documentation, licensing, and release notes make the package straightforward to evaluate. Its small project footprint and limited workflow hardening leave less evidence of ongoing resilience.

Latest v0.4.1PackagistPackagist

68%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

83

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

83

Health Score Breakdown

Project backingcaution

The repository is owned by an individual rather than an organization, so there is no organizational backing shown to offset the narrow project footprint.

Release historycaution

The package has 16 releases since November 2019, but none in the last 12 months and the latest release was in July 2023, more than three years ago. This is meaningful maintenance concern for a dependency, despite its previously regular early release cadence.

Repo popularitycaution

The repository has only 2 stars and 6 forks. Low popularity is not decisive for this specialized adapter, but it provides little outside evidence of broad community use or review.

Repo toolingcaution

Composer build tooling is present, but no security scanning tools were detected. This is a modest transparency and maintenance gap, not evidence that the package is unsafe.

Security policycaution

The repository has no security policy. For a small binary-distribution adapter, this reduces disclosure transparency but is not severe on its own.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Christoph Wurst

Direct Dependencies

DependencyLast ReleaseScore
psr/log
Version ^1.1|^2.0|^3.0
—
—
christophwurst/kitinerary
Version ^0.2.2
—
—

Weekly Downloads

Info

Last Published
3 years ago
Created
6 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform