Package Health

el-schneider/statamic-magic-actions

Clear documentation, tests, release notes, and licensing make the package straightforward to evaluate. Treat its workflow setup and single-person maintenance as ongoing ownership risks.

Latest v0.2.2PackagistPackagist

64%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

92

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Project backingcaution

The registry namespace and repository are owned by the same individual, and the repository is user-owned. This matches the single-maintainer activity profile but provides no evidence of broader organizational backing.

Repo bus factorcaution

One contributor made 100% of the three recent commits, leaving maintenance dependent on a single person. The repository is user-owned rather than organization-owned, so there is no observed organizational handoff buffer.

Repo commit activitycaution

Only three commits were recorded over the last three months, all from one active maintainer; this is some recent activity but a thin maintenance signal.

Repo issue activitycaution

Six issues and 16 open pull requests remain outstanding, with no issues closed or pull requests merged in the last month; this suggests limited recent follow-through.

Security policycaution

The repository has no security policy, leaving vulnerability-reporting expectations undocumented for a package that processes application content and external AI-provider credentials.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Jonas List

Direct Dependencies

DependencyLast ReleaseScore
statamic/cms
Version ^5.0
—
—
symfony/yaml
Version ^7.0
—
—
prism-php/prism
Version ^0.99.0 || ^0.100
—
—
guzzlehttp/guzzle
Version ^7.8
—
—

Weekly Downloads

Info

Last Published
1 month ago
Created
7 months ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform