Package Health

gofintech/metrics

The package is licensed, has no install-time scripts, and keeps its runtime dependency surface minimal. Documentation is absent, and the repository has no security policy or automated security scanning, which makes long-term maintenance harder to evaluate.

Latest v0.2PackagistPackagist

35%

Total Score

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

58

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Release historydanger

Only three releases were published, with the latest in October 2018 and none in the last seven years. That prolonged release silence is strong evidence of abandonment risk for a package developers may need to maintain or update.

Package scaffoldingcaution

The artifact has no README, and the repository reports no tests or changelog. Missing tests and changelogs can be normal for a tiny package, but the absent consumer documentation is a real integration gap.

Repo toolingcaution

Composer is used for the build, but no security scanning tools are configured. This is a modest transparency and maintenance gap rather than evidence that the package is unsafe.

Repository archivedcaution

The linked repository is not archived, which avoids an explicit abandonment marker, although its last push was in November 2018 and the release history indicates the project is inactive.

Security policycaution

The repository has no security policy. For a small telemetry library this is not independently severe, but it reduces transparency around reporting and handling vulnerabilities.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

No direct dependencies.

Weekly Downloads

Info

Last Published
7 years ago
Created
8 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform