Package Health

clearlyip/mago-lsp

The MIT license, clear README, and release documentation make the package straightforward to inspect and install. Workflow references are all unpinned, and the repository has no security policy. The release notes call the language server a work in progress, so pin this version only if changing editor behavior is acceptable.

Latest 1.50.0PackagistPackagist

62%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

67

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

88

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

67

Health Score Breakdown

Package scaffoldingcaution

The artifact has a substantial README and changelog, and this exact version has GitHub release notes. The notes clearly disclose that the language server is a work in progress without compatibility guarantees, which is an important stability caveat for consumers.

Repo bus factorcaution

One contributor made all four commits in the last three months. Organization ownership provides some handoff capacity, but no second recently active contributor is shown to reduce the immediate concentration risk.

Repo commit activitycaution

The repository recorded four commits in the last three months, so it is not inactive, but that activity is modest for a rapidly released package.

Security policycaution

The repository has no SECURITY.md or other security policy. This is a transparency and response-process gap, though it is not evidence that the package is unsafe.

Version stabilitycaution

Version 1.50.0 is a non-prerelease stable-major release with no recent prerelease share, although the release notes limit compatibility guarantees until version 2.0.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

No direct dependencies.

Weekly Downloads

Info

Last Published
1 month ago
Created
4 months ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform