Package Health

erusev/parsedown-extra

It includes tests, a README, a matching MIT license, and release notes for this version. The repository is not archived, but it has no security policy and no recent issue or pull-request movement.

Latest v2.0.0-beta-1PackagistPackagist

65%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

93

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Repo commit activitycaution

There were zero commits and zero active maintainers in the last three months. This is a meaningful recent-maintenance gap, although the repository was pushed in March 2026.

Repo issue activitycaution

There were no new or closed issues and no merged pull requests in the last month, with 75 open issues and 17 open pull requests. That indicates limited recent project movement.

Repo toolingcaution

The repository uses Composer build tooling, which fits the package ecosystem. No security scanning tools were detected, a modest hygiene limitation rather than evidence of unsafe behavior.

Security policycaution

The repository has no security policy. For a library with substantial downstream use, this weakens the transparency and reporting path, though it does not show a direct security defect.

Workflow auditcaution

The sole workflow was fully analyzed with no dangerous triggers, untrusted checkouts, injection findings, or write permissions. However, both of its two action references are unpinned, leaving avoidable workflow supply-chain exposure.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Emanuil Rusev

Direct Dependencies

DependencyLast ReleaseScore
erusev/parsedown
Version ^2.0.0|^2.0.0-beta-1
—
—

Weekly Downloads

Info

Last Published
4 years ago
Created
12 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform