Package Health

discoverygarden/dgi_fixity

Latest v1.4.6PackagistPackagist

68%

Total Score

caution

Usable with caveats: the repository has had no commits in three months and all workflow actions are unpinned.

Health Score Breakdown

Repo commit activitycaution

The repository recorded zero commits and zero active maintainers in the last three months. This is a meaningful maintenance warning, although the recent release and push provide partial compensation.

Repo issue activitycaution

There were no new or closed issues or pull requests in the last month, while one issue and one pull request remain open. This adds a modest sign of limited current project activity.

Repo toolingcaution

Composer is used for builds, but no repository security-scanning tool was detected. That is a hygiene gap rather than evidence that the release is unsafe on its own.

Workflow auditcaution

Both workflows were analyzed successfully with no reported audit findings, and the pull_request_target trigger has no untrusted checkout or script-injection sink. However, all three action references are unpinned, leaving avoidable workflow supply-chain exposure.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

DependencyLast ReleaseScore
drupal/filehash
Version ^3.0
—
—

Weekly Downloads

Info

Last Published
4 months ago
Created
4 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform