Package Health

fadoe/uuid

The package has tests, a clear BSD-3-Clause license, and only one runtime dependency. Its sole release is more than eight years old, repository development stopped nearly five years ago, and the repository does not clearly identify the package.

Latest 0.5.0PackagistPackagist

48%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

64

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Health Score Breakdown

Release historydanger

This is the package's only release, published more than eight years ago, with no releases in the last 12 months. That long absence of releases is a substantial maintenance concern.

Repo commit activitydanger

The repository recorded no commits and had no active maintainers in the last three months, with the last push nearly five years ago. This strongly supports an abandonment concern.

Repo package mentioncaution

The repository name does not match the package name and its README does not mention the package. That makes package-to-source ownership unclear and adds supply-chain transparency risk.

Repo popularitycaution

The repository has zero stars and forks and only one watcher. Popularity is supporting evidence rather than a verdict, but these numbers provide no meaningful external evidence of ongoing use.

Security policycaution

The repository has no security policy. For a small library this is a transparency gap, though it is less serious than the lack of recent maintenance.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Falk Döring

Direct Dependencies

DependencyLast ReleaseScore
ramsey/uuid
Version ^3.7
—
—

Weekly Downloads

Info

Last Published
8 years ago
Created
8 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform