Package Health

fh/git-deployment

The package has a clear MIT declaration, extensive tests, and a substantial README. Its small dependency set and clean package structure reduce adoption friction, but they do not provide current maintenance coverage.

Latest 1.0.5PackagistPackagist

45%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

71

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

83

Health Score Breakdown

Release historydanger

The latest release was published about nine years ago, with no releases in the last 12 months. This strongly suggests abandonment for a deployment package that may need ongoing compatibility and fixes.

Maintainerscaution

The package has one registry maintainer. A single maintainer is a limited support base, and the concern is amplified by the long absence of releases and repository activity.

Repo toolingcaution

Composer and Make are used for project tooling, showing basic build structure. No security scanning tools are present, which is a minor hygiene gap but not decisive compared with the maintenance evidence.

Repository archivedcaution

The repository is not archived, but it was last pushed about nine years ago. Its accessible status is mildly reassuring, while the prolonged lack of activity remains a maintenance concern.

Security policycaution

The repository has no security policy. This limits guidance for reporting vulnerabilities, but it is a secondary concern rather than evidence that the package is unfit on its own.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Jon Watson

Direct Dependencies

DependencyLast ReleaseScore
naneau/semver
Version dev-master#c771ad1e6c89064c0a4fa714979639dc3649d6c8

Weekly Downloads

Info

Last Published
9 years ago
Created
10 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform