Package Health

fab2s/dt0

Clear documentation, tests, release notes, and a matching repository make the project easy to evaluate. The small maintainer base and entirely unpinned workflow actions add meaningful maintenance and build-integrity concerns.

Latest 2.0.2PackagistPackagist

72%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

94

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

63

Health Score Breakdown

Lifecycle scriptscaution

post-install-cmd and post-update-cmd scripts run during dependency operations. These add some supply-chain and installation complexity, although no evidence here shows that the scripts are harmful.

Project backingcaution

The package and repository are owned by the same individual account rather than an organization. This is consistent ownership, but it does not provide organizational handoff capacity to offset the concentrated contributor base.

Repo bus factorcaution

One contributor made 100% of the recent commits. With a user-owned project and no second active contributor shown, maintenance continuity depends heavily on one person.

Repo commit activitycaution

The repository received 3 commits in the last 3 months from one active maintainer. Recent activity is present, but the volume is modest and concentrated.

Repo toolingcaution

Composer build tooling is present, but no security-scanning tool was detected. The missing scanning layer is a modest transparency and maintenance gap, not a severe risk by itself.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Fabrice de Stefanis

Direct Dependencies

DependencyLast ReleaseScore
fab2s/enumerate
Version ^0.0.1|^0.1.0
—
—
fab2s/context-exception
Version ^2.0|^3.0
—
—

Weekly Downloads

Info

Last Published
1 month ago
Created
2 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform