Package Health

davix/module-base

This is a usable but lightly established package: it has a stable 1.0.1 release, a clear GPL-3.0 license with license files, no install-time lifecycle scripts, and only one runtime dependency. However, it is only 94 days old with two releases, has one registry maintainer, provides no packaged tests or changelog, and lacks a declared source repository, limiting transparency and preventing verification of maintenance activity. Dependence is reasonable with review and monitoring, but the package does not yet demonstrate the maturity or backing expected for a low-risk foundational dependency.

Latest 1.0.1PackagistPackagist

58%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

80

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

100

Health Score Breakdown

Maintainerscaution

Only one account has registry publish access. This does not establish who actively maintains the project, but it does indicate a thin administrative continuity base when combined with the package's limited release history.

Package scaffoldingcaution

A substantive README is present, but the artifact has no tests or changelog and no repository evidence is available to compensate for those omissions; this weakens maintenance and release-review confidence.

Release historycaution

The package is young at 94 days and has only two releases, with a median interval of about 94 days; this provides limited evidence of sustained maintenance and release discipline.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Davix

Direct Dependencies

No direct dependencies.

Weekly Downloads

Info

Last Published
16 days ago
Created
3 months ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform