Package Health

goldfinch/ssrestyle

The MIT license, included tests, and clear README provide useful consumer support. Missing security scanning and a security policy leave maintenance and disclosure practices less transparent.

Latest v1.0.21PackagistPackagist

45%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

33

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

67

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Release historydanger

The latest release was in November 2024, with no releases in the last 12 months. That long release gap weakens evidence of ongoing maintenance.

Repo commit activitydanger

There were zero commits and zero active maintainers in the last three months, a strong sign that maintenance has currently stopped or become inactive.

Repo package mentiondanger

The repository name does not match goldfinch/ssrestyle, and its README does not mention that package. The artifact README instead refers to goldfinch/enchantment, so package ownership and source provenance are unclear.

Project backingcaution

The package and repository use the same goldfinch namespace, but the repository owner is an individual account rather than an organization. This offers limited backing and does not resolve the package-name mismatch.

Repo issue activitycaution

Two issues remain open, while no issues or pull requests were created or closed in the last month. This adds modest evidence of limited current project activity.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Art Karasev

Direct Dependencies

DependencyLast ReleaseScore
silverstripe/admin
Version ^2.0
—
—
goldfinch/extra-assets
Version ^1.0
—
—
silverstripe/framework
Version ^5.0
—
—

Weekly Downloads

Info

Last Published
1 year ago
Created
2 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform