Package Health

codeception/module-redis

Usable with caveats: it is an established, licensed Codeception module with a recent stable release, repository tests, and organization backing. However, there has been no repository commit activity in three months, and the repository lacks a security policy and explicit workflow token permissions.

Latest 3.2.3PackagistPackagist

62%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

75

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

88

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

67

Health Score Breakdown

Name lookalikecaution

The name resembles codeception/module-rest and the indicator reports borrowed lookalike identity, which can create package-selection confusion; however, artifact overlap is 0 and the linked repository clearly matches this package.

Repo commit activitycaution

The repository recorded zero commits and zero active maintainers in the last three months. The recent release partly offsets this, but the lack of ongoing source activity is a maintenance concern.

Repo toolingcaution

Composer build tooling is present, but no security scanning tools were detected, leaving a modest transparency and maintenance gap.

Security policycaution

The repository has no security policy, so vulnerability reporting and response expectations are not documented.

Token permissionscaution

The sole workflow has no top-level token permissions declaration. No write permissions were observed, but explicitly limiting permissions would provide stronger workflow hygiene.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Michael Bodnarchuk
Dmitriy Maltsev

Direct Dependencies

DependencyLast ReleaseScore
predis/predis
Version ^1.1 | ^2.0 | ^3.0
—
—
sebastian/comparator
Version ^4.0 | ^5.0 | ^6.0 | ^7.0 | ^8.0
—
—
codeception/codeception
Version ^5.0
—
—

Weekly Downloads

Info

Last Published
7 months ago
Created
7 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform