Package Health

daqi/dq-exment

The package is documented and licensed, with tests and a changelog in both the artifact and repository. Its single release was over two years ago, with no recent commits, no security policy, and all 11 workflow actions unpinned.

Latest v5.0.9PackagistPackagist

55%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

71

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Health Score Breakdown

Release historydanger

Only one release is recorded, published over two years ago, with no releases in the last 12 months. That provides little evidence of ongoing release maintenance.

Repo commit activitycaution

The repository has recorded no commits and no active maintainers in the last three months. Together with the single-release history, this raises meaningful abandonment risk.

Repo popularitycaution

The repository has zero stars and forks and one watcher. Popularity is only supporting evidence, but these counts provide little external evidence of adoption or community support.

Repo toolingcaution

Composer is used for builds, but no security-scanning tool is reported. The missing scan is a modest transparency and maintenance concern, not proof of unsafe code.

Security policycaution

The repository has no security policy. For a web application with authentication, APIs, and data-management features, this leaves vulnerability reporting and response expectations unclear.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Exceed One Co.,Ltd.
Hiroshi Sato

Direct Dependencies

DependencyLast ReleaseScore
laravel/ui
Version ^3.0
—
—
lcobucci/jwt
Version ^4.0.0
—
—
mews/purifier
Version ^3.2
—
—
laravel/helpers
Version ~1.4
—
—
exment-git/spout
Version ^4.0
—
—

Weekly Downloads

Info

Last Published
3 years ago
Created
3 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform