Package Health

fabricate/queue

MIT licensing and an organization-owned repository provide useful transparency. The package is still early-stage, with limited activity and little documented project hygiene.

Latest v0.7.0PackagistPackagist

59%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

67

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

75

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Package scaffoldingcaution

The artifact has no README, while tests and a changelog are absent both from the package and repository; missing tests and changelog are normal for published artifacts, but the missing consumer-facing README reduces transparency for a library.

Release historycaution

The package is only 56 days old and has two releases, with releases about two weeks apart. This shows some activity but provides limited evidence of long-term maintenance.

Repo bus factorcaution

One contributor made all three recent commits, creating a concentrated maintenance risk. Organization backing partly compensates because the project can potentially hand work to another maintainer.

Repo commit activitycaution

Only three commits from one active maintainer were recorded in the last three months. That demonstrates recent activity but gives little evidence of sustained maintenance capacity.

Repo toolingcaution

Composer build tooling is present, but no security-scanning tools were detected. The missing scanning is a hygiene gap rather than evidence of abandonment.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Angel Gonzalez
Taylor Otwell

Direct Dependencies

DependencyLast ReleaseScore
ramsey/uuid
Version ^4.7
symfony/process
Version ^7.4.5 || ^8.0.5
fabricate/chassis
Version ^0.7.0
fabricate/console
Version ^0.7.0
fabricate/pipeline
Version ^0.7.0

Weekly Downloads

Info

Last Published
1 month ago
Created
2 months ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform