Package Health

empiricompany/openmage-facebook-pixel

The README, release notes, and lightweight dependency set make the package easy to evaluate. There is little formal security process, so future maintenance and release quality depend heavily on the current project owner.

Latest 1.0.5PackagistPackagist

68%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

75

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

83

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Licensecaution

The manifest declares MIT, while the repository license file is detected as OSL-3.0. The release is licensed, but the mismatch creates legal uncertainty for adopters.

Repo bus factorcaution

One contributor made all 14 commits in the last 3 months, giving the project a bus factor of one. This concentrates maintenance and release continuity in a single person.

Repo popularitycaution

The repository has one star, no forks, and no watchers, providing little external evidence of review or adoption. Popularity is only supporting evidence, so this modestly limits confidence rather than determining the verdict.

Repo toolingcaution

Composer is used as a build tool, but no security scanning tools are present. The missing scanning is a modest process gap rather than evidence of abandonment.

Security policycaution

The repository has no security policy, leaving vulnerability reporting and response expectations undocumented. This is a transparency gap for an extension that handles tracking-related customer data.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Tony

Direct Dependencies

DependencyLast ReleaseScore
magento-hackathon/magento-composer-installer
Version *

Weekly Downloads

Info

Last Published
1 month ago
Created
2 months ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform