Package Health

firehed/deploy-command

It includes tests, a clear README, release notes, and a stable 1.2.0 version, with no install-time scripts. The small repository also uses Dependabot, but its nine GitHub Actions references are unpinned and there is no security policy.

Latest 1.2.0PackagistPackagist

58%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

88

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

83

Health Score Breakdown

Release historydanger

The latest release was published about six years ago, and there were no releases in the preceding 12 months. This is a substantial maintenance concern for a deployment library, despite its stable release history and three total releases.

Repo commit activitycaution

The repository recorded no commits and no active maintainers in the last three months; its last push was about two years ago. That suggests ongoing maintenance capacity is limited, although the repository is not archived.

Workflow auditcaution

All three workflows were analyzed successfully with no dangerous triggers, sinks, or audit findings, but all nine action references are unpinned. The clean audit is reassuring, while unpinned actions leave avoidable build-integrity risk.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Eric Stern

Direct Dependencies

DependencyLast ReleaseScore
psr/log
Version ^1.0
—
—
symfony/console
Version ^4.0 || ^5.0
—
—
symfony/process
Version ^4.0 || ^5.0
—
—

Weekly Downloads

Info

Last Published
6 years ago
Created
8 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform