Package Health

chubbyphp/chubbyphp-clean-directories

This is a healthy, established package with over five years of release history, a stable 1.5.3 release, four releases in the last 12 months, a non-deprecated registry status, and a recently updated non-archived repository. The repository is organization-owned, matches the package, includes tests and build/security tooling, and has no install-time lifecycle scripts or dangerous workflow patterns. The main concerns are that recent activity is concentrated in one contributor, the repository has no security policy, and the workflow does not declare top-level token permissions; these are meaningful hygiene and continuity gaps but do not outweigh the demonstrated maintenance and project backing.

Latest 1.5.3PackagistPackagist

82%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

70

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

94

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

80

Health Score Breakdown

Maintainerscaution

Only one registry account has publish access, which is a continuity concern; however, the linked repository is organization-owned and recent repository activity confirms active ownership, partly compensating for the narrow registry publishing base.

Repo bus factorcaution

All recent commits come from one contributor, creating a concentrated maintenance dependency. Organization ownership provides some handoff capacity, but no second active contributor is shown.

Repo commit activitycaution

There was 1 commit by 1 active maintainer in the last 3 months, demonstrating recent activity but at a low cadence and with limited redundancy.

Repo popularitycaution

The repository has 0 stars, 1 fork, and 1 watcher, indicating limited community adoption. Popularity is supporting evidence rather than a decisive health measure, so this is only a mild concern for external validation.

Security policycaution

No repository security policy was found, reducing transparency about vulnerability reporting and response procedures.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Dominik Zogg

Direct Dependencies

DependencyLast ReleaseScore
symfony/console
Version ^6.4.45|^7.4.18|^8.1.6
—
—

Weekly Downloads

Info

Last Published
29 days ago
Created
6 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform