Package Health

coldtrick/group_tools

Healthy and suitable to depend on. It has a long release history, a recent stable release, active commits, and organization backing; the main caveats are limited contributor depth and missing repository security-policy and workflow permission declarations.

Latest v23.2PackagistPackagist

84%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

75

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

94

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Repo bus factorcaution

Two contributors are active, but one made about 73% of the recent commits, leaving some maintainer concentration risk; organization backing provides partial resilience.

Repo issue activitycaution

There are 8 open issues and no recent issue or pull-request activity, which is a modest transparency and responsiveness concern, although recent commits and releases provide stronger evidence of ongoing work.

Repo toolingcaution

Composer is used for builds, but no security-scanning tooling is detected, leaving a gap in the project's automated security hygiene.

Security policycaution

The repository has no security policy, so its process for receiving and communicating vulnerability reports is unclear.

Token permissionscaution

All 3 workflows omit top-level token permissions declarations, reducing explicit least-privilege guarantees even though none declares top-level write access.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

No direct dependencies.

Weekly Downloads

Info

Last Published
1 month ago
Created
11 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform