Package Health

emblementecarlosgit/emblemente-php-validate

The license declaration conflicts with the GPL-3.0 license file, and the linked repository does not identify this package. Its small artifact has a stable version and no install scripts, but maintenance evidence is stale.

Latest 9.0.0PackagistPackagist

38%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

50

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Health Score Breakdown

Licensecaution

The manifest declares MIT while the artifact license file is detected as GPL-3.0. A license file exists, but this mismatch creates material uncertainty about the terms consumers may rely on.

Release historycaution

The package has had no release in the last 12 months, and its latest release was about 3 years and 9 months ago. Eight releases show some history, but the long inactivity materially raises abandonment risk.

Repo commit activitycaution

The repository recorded zero commits and zero active maintainers in the last 3 months, consistent with the package's stale release history. The repository is not archived, but it shows no recent maintenance.

Repo package mentioncaution

The linked repository name does not match the package name, and no README package mention was found. A monorepo sub-package could explain a name mismatch, but the available evidence does not establish that relationship.

Security policycaution

The linked repository has no security policy. This is a transparency gap, though the package's small scope and lack of other observed security-process evidence limit how strongly it affects the assessment.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Carlos Eduardo de brito

Direct Dependencies

No direct dependencies.

Weekly Downloads

Info

Last Published
3 years ago
Created
3 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform