Package Health

ditogit/ci4-agent

This release has solid basic packaging hygiene: it is MIT-licensed, includes a README, tests, a complete-looking source tree, no install lifecycle scripts, a stable non-prerelease version, and is not deprecated or archived. However, it is exceptionally new, with all six releases published within about 51 minutes, no observed commits or active maintainers in the last three months, no repository security policy, no security scanning, and no meaningful popularity or issue history. The repository does reference the package in its README, which partly offsets the name mismatch, but the evidence is still too limited to establish durable maintenance or project maturity; adoption is reasonable only with heightened review and monitoring.

Latest v1.0.5PackagistPackagist

58%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

83

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

90

Health Score Breakdown

Project backingcaution

The repository is owned by an individual user rather than an organization, so there is no visible organizational backing to compensate for the thin maintenance history.

Release historycaution

The package is brand new: its six releases occurred within about 51 minutes and its package age is 0 days. This provides almost no historical evidence of maintenance quality or release discipline.

Repo commit activitycaution

The repository reports zero commits and zero active maintainers over the last three months. Given the package's same-day creation this may reflect its age, but it still leaves maintenance capacity and continuity unproven.

Repo issue activitycaution

There are no open issues or pull requests and no recent issue or pull-request activity. This is not inherently negative for a new package, but it provides no evidence of an active user or maintainer feedback loop.

Repo popularitycaution

The repository has zero stars, forks, and watchers. For a package released today this is understandable, but it leaves popularity-based validation unavailable.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

DependencyLast ReleaseScore
codeigniter4/framework
Version ^4.4
—
—

Weekly Downloads

Info

Last Published
18 days ago
Created
18 days ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform