Package Health

getjoystick/joystick-php

The repository includes tests, release notes, clear documentation, and matching source files, while organization backing and security tooling add useful context. However, the package has had no registry release for over three years, has little community activity, lacks a security policy, and uses six unpinned workflow actions.

Latest v0.1.0PackagistPackagist

62%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

79

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Health Score Breakdown

Release historydanger

Only three releases were published, all clustered in March 2023, with no release in over three years. This is a meaningful maintenance concern despite the repository having been pushed more recently.

Repo issue activitycaution

There were no new or closed issues or pull requests in the last month, while two issues and one pull request remain open. This suggests limited visible project activity.

Repo popularitycaution

The repository has 2 stars, 0 forks, and 1 watcher, providing very little external adoption evidence. Low popularity is supporting evidence rather than a standalone health verdict.

Security policycaution

The repository has no published security policy. This weakens vulnerability-reporting transparency, although the package does use a security scanning tool.

Workflow auditcaution

The sole workflow was fully analyzed and has no dangerous triggers, untrusted checkouts, script injection, or audit findings. However, all 6 action references are unpinned, leaving avoidable build-integrity risk.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Joystick and contributors

Direct Dependencies

DependencyLast ReleaseScore
beberlei/assert
Version ^3.3
psr/http-client
Version ^1.0
psr/http-message
Version ^1.0
psr/simple-cache
Version ^1.0|^2.0|^3.0
php-http/discovery
Version ^1.15

Weekly Downloads

Info

Last Published
3 years ago
Created
3 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform