Package Health

drewlabs/http-query

This release appears usable and reasonably transparent, with an MIT license, a linked non-archived organization-owned repository, recent release and commit activity, a documented README, repository tests, and no install-time lifecycle scripts. The main concerns are its pre-1.0 maturity, modest release history, only two commits in the last three months from one contributor, no repository security policy or security-scanning tooling, and no workflow automation; the organization backing partly mitigates the concentrated contributor base. Overall, it is a viable dependency with maintenance and security-hygiene caveats rather than a clear abandonment risk.

Latest v0.4.1PackagistPackagist

68%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

70

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

83

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

90

Health Score Breakdown

Repo bus factorcaution

All 2 recent commits came from one contributor, creating a concentrated bus factor. Because the repository is organization-owned, maintenance handoff is more plausible than for an unaffiliated single-maintainer project, but the observed activity remains narrow.

Repo commit activitycaution

The repository recorded 2 commits in the last 3 months, so maintenance is present but light rather than vigorous.

Repo issue activitycaution

There were no new or closed issues or pull requests in the last month, and no pull requests were open. This provides little evidence of an active external maintenance community.

Repo popularitycaution

The repository has zero stars, forks, and watchers, indicating limited external adoption or visibility. Popularity is supporting evidence only, so this is a modest concern rather than a decisive health problem.

Repo toolingcaution

Composer build tooling is present, but no security-scanning tools are configured. The missing security automation is a hygiene gap for a package that handles HTTP requests.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

azandrew-sidoine

Direct Dependencies

DependencyLast ReleaseScore
drewlabs/query
Version ^0.3.0
drewlabs/curl-client
Version ^0.4.0

Weekly Downloads

Info

Last Published
10 days ago
Created
1 year ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform