Package Health

coleus/music

The MIT license, included tests, and matching repository make adoption clearer. Sixteen runtime dependencies add integration weight, and workflow coverage cannot establish release safeguards.

Latest v1.0.53PackagistPackagist

68%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

67

Dependencies
Dependencies
Evaluates the health and security of package dependencies

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

88

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Health Score Breakdown

Dependency profilecaution

The release declares 16 runtime dependencies and no development dependencies. This is a moderately broad integration surface and increases the amount of upstream behavior the package depends on.

Repo bus factorcaution

One contributor made all four commits in the past three months, creating a concentrated maintenance dependency. The organization-owned repository provides some handoff capacity, so this is a caution rather than a severe abandonment signal.

Repo commit activitycaution

Four commits were made in the past three months, showing some recent activity, but all activity came from one active maintainer.

Repo popularitycaution

The repository has no stars, forks, or watchers. This is weak supporting evidence, but low popularity alone does not establish that the package is unsafe to depend on.

Repo toolingcaution

Composer is used as a build tool, but no security-scanning tools were detected. That leaves a meaningful verification gap for dependency and release health.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

DependencyLast ReleaseScore
coleus/apps
Version ^1.0
coleus/table
Version ^1.0
coleus/users
Version ^1.0
coleus/support
Version ^1.0
illuminate/view
Version ^10.45|^11.0|^12.0

Weekly Downloads

Info

Last Published
17 days ago
Created
10 months ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform