Package Health

eloquage/beacon

Usable with caveats: this is a clearly documented, MIT-licensed package backed by an active-looking organization repository with tests and automated tooling. It is brand new with only one v0.1.0 release and no recorded commit activity beyond its initial publication, so long-term stability is unproven.

Latest v0.1.0PackagistPackagist

68%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

75

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

88

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

70

Health checks

Dangerous workflowscaution

Six workflows were analyzed with no untrusted checkout or script-injection findings; one pull_request_target workflow remains a limited workflow-risk consideration.

Release historycaution

Only one release exists and the package was first published very recently, so there is no demonstrated release track record or maintenance history yet.

Repo commit activitycaution

There were zero commits and zero active maintainers in the preceding three months, but this is heavily explained by the package being newly published; it still leaves future maintenance unproven.

Security policycaution

The repository has no security policy, leaving vulnerability reporting and response expectations undocumented for consumers.

Token permissionscaution

Three workflows grant top-level write permissions and one lacks top-level permissions, which is broader or less explicit than ideal for CI automation.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Miguel Enes

Direct Dependencies

No direct dependencies.

Weekly Downloads

Info

Last Published
2 days ago
Created
2 days ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform