Package Health

codicastudio/media-library

The MIT license, repository tests, and GitHub release support basic transparency. The package shows little evidence of ongoing maintenance or broader project support.

Latest 1.0.0PackagistPackagist

39%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

60

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Health Score Breakdown

Release historydanger

Only one release exists, published about six years ago, with no releases in the last 12 months. This is strong evidence of abandonment risk for a dependency.

Maintainerscaution

The package has one registry maintainer and the repository is user-owned rather than organization-backed. A single-person publishing base offers limited visible continuity if that maintainer becomes unavailable.

Repo popularitycaution

The repository has 0 stars, 0 forks, and 1 watcher, providing little supporting evidence of adoption or community resilience. Popularity is only supporting evidence, but this does not offset the stale release history.

Repository archivedcaution

The repository is not archived, which is a positive, but it was last pushed about six years ago. The absence of recent repository activity still lowers confidence in ongoing maintenance.

Security policycaution

No security policy was found in the repository. This is a transparency and vulnerability-reporting gap, though it is less serious than the lack of maintenance evidence.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Michael J Brown

Direct Dependencies

DependencyLast ReleaseScore
illuminate/bus
Version ^8.0
symfony/console
Version ^5.0
league/flysystem
Version ^1.0.64
codicastudio/image
Version ^1.4.0
illuminate/console
Version ^8.0

Weekly Downloads

Info

Last Published
5 years ago
Created
5 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform