Package Health

goatherd/gh-cache

Three issues remain open, with no recent issue or pull-request activity. The package has no tests or security policy, although its README, MIT declaration, small dependency set, and lack of install scripts provide some transparency.

Latest 1.0PackagistPackagist

32%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

67

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Release historydanger

The package has made only one release, on 15 May 2014, with no releases in the last 12 months. This is strong evidence of abandonment risk for a dependency released over 12 years ago.

Package scaffoldingcaution

A 2,014-character README is present, which helps consumers understand the package. Tests and a changelog are absent, but those are not expected in the published artifact; the README still contains several unfinished installation TODOs.

Project backingcaution

The repository is owned by the same individual user as the registry namespace. This shows ownership alignment, but it does not establish organizational backing or a broader maintenance base.

Repo issue activitycaution

Three issues remain open, with no new or closed issues and no pull-request activity in the last month. Combined with the old last push, this indicates an inactive project.

Repo popularitycaution

The repository has zero stars and forks and only one watcher. Popularity is supporting evidence rather than a verdict, but these counts provide no evidence of a broad active user or contributor base.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Maik Penz

Direct Dependencies

DependencyLast ReleaseScore
composer/installers
Version ~1.0
—
—

Weekly Downloads

Info

Last Published
12 years ago
Created
12 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform