Package Health

danog/php-rtc-sctp

The source includes tests, a changelog, security guidance, and static analysis. Its 58-day history and two-contributor base leave less evidence of long-term resilience, while install/update scripts deserve normal review.

Latest 2.0.13PackagistPackagist

82%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

83

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

94

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

67

Health Score Breakdown

Lifecycle scriptscaution

The package runs post-install and post-update Composer scripts, which add execution during dependency operations and warrant review, though their presence alone is not evidence of poor maintenance.

Release historycaution

The package is only 58 days old but already has 31 releases, with releases arriving roughly every 72 minutes at the median. This shows active publishing but leaves limited evidence of long-term stability.

Repo bus factorcaution

Two contributors are active, but the leading contributor made about 69% of recent commits. The second contributor is substantial but the maintenance base remains concentrated.

Workflow auditcaution

The single workflow was fully analyzed, uses read-only permissions, and has no untrusted checkout or script-injection findings. All 3 action references are unpinned, leaving a workflow supply-chain hygiene gap.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Amin Yazdanpanah
Sana Moniri
Quasar Stream Community
Daniil Gentili

Direct Dependencies

DependencyLast ReleaseScore
amphp/amp
Version ^3.1.3
danog/php-rtc-ice
Version ^1.1.18 || ^2.0
danog/php-rtc-sdp
Version ^1.1.6
danog/php-rtc-mixin
Version ^2.0
danog/php-rtc-stats
Version ^1.1.3

Weekly Downloads

Info

Last Published
2 hours ago
Created
1 year ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform