Package Health

eloquage/rerank-ext

Usable with caveats: this is a clearly documented, non-deprecated extension package with a minimal dependency footprint and matching repository. It is brand new with no recorded commits yet, and its release workflow has write permissions, so adoption should wait for evidence of ongoing maintenance and review.

Latest v0.1.0PackagistPackagist

68%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

75

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

88

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

67

Health checks

Release historycaution

The package was released only once and is 0 days old, so there is no release track record or evidence yet of sustained maintenance. This is an early maturity concern rather than abandonment evidence by itself.

Repo commit activitycaution

The repository records zero commits and zero active maintainers in the last 3 months. Because the project is only 0 days old, this is primarily an unresolved maintenance-capacity concern rather than proof that it has been abandoned.

Security policycaution

No security policy is present, leaving reporting and response expectations undocumented. This is a transparency gap for a package that distributes a native binary.

Token permissionscaution

One release workflow has top-level write permissions, which is appropriate for publishing release assets but increases the impact of a workflow compromise; the other workflow is read-only.

Version stabilitycaution

Version v0.1.0 is an initial non-stable-major release, which indicates an immature API and limited production history.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

No direct dependencies.

Weekly Downloads

Info

Last Published
1 day ago
Created
1 day ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform