Package Health

dystcz/dystore-api

The package has a clear MIT license, documentation, changelog, and release notes for this version. Organization ownership and a matching repository provide useful continuity, but the project shows limited recent activity and incomplete security hygiene.

Latest 1.0.15PackagistPackagist

62%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

67

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

93

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Release historycaution

The package has 51 releases over about 21 months and a current release, but only 2 releases in the last 12 months suggests a slower recent cadence.

Repo bus factorcaution

All recent commits came from one contributor, creating a concentrated maintenance path; organization ownership provides some ability to hand off maintenance.

Repo commit activitycaution

Only 2 commits were recorded in the last 3 months, indicating limited recent maintenance activity.

Security policycaution

The repository has no security policy, leaving reporting and response expectations undocumented for a package that exposes an API layer.

Workflow auditcaution

The single analyzed workflow uses a pull_request_target trigger without an untrusted checkout or script injection, but its only action reference is unpinned. No high- or medium-confidence audit findings were reported.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Dystopia

Direct Dependencies

DependencyLast ReleaseScore
lunarphp/lunar
Version 1.5.0-beta.6
—
—
illuminate/support
Version ^12.0|^13.0
—
—
laravel-json-api/hashids
Version ^3.2
—
—
laravel-json-api/laravel
Version ^5.1
—
—
laravel-json-api/non-eloquent
Version ^4.2
—
—

Weekly Downloads

Info

Last Published
1 month ago
Created
2 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform