Package Health

goletter/hyperf-mtls

The package is only 58 days old, and all three recent commits come from one contributor. Its README and MIT declaration help, but no tests or security policy leave limited evidence for a security-sensitive tool.

Latest v1.0.2PackagistPackagist

63%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

86

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Project backingcaution

The repository is owned by a user account rather than an organization, so the single-contributor activity shown elsewhere is not offset by visible organizational backing.

Release historycaution

The package is young at 58 days, but it has already made three releases, including three releases in the last 12 months with a median interval of about 9 days. This shows early activity but not long-term maturity.

Repo bus factorcaution

One contributor made all three commits in the last three months, giving the project a single-person operational dependency. There is no second active contributor shown to provide maintenance continuity.

Repo commit activitycaution

The repository recorded three commits in the last three months, showing recent work, but the activity is sparse for a package handling certificate generation. This supports only limited maintenance confidence.

Repo toolingcaution

Composer is used for builds, but no security scanning tools were detected. For a package that generates and stores certificates, that leaves a modest security-maintenance gap.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

goletter

Direct Dependencies

DependencyLast ReleaseScore
hyperf/di
Version ~3.1.0
hyperf/config
Version ~3.1.0
hyperf/command
Version ~3.1.0
hyperf/contract
Version ~3.1.0
hyperf/http-server
Version ~3.1.0

Weekly Downloads

Info

Last Published
1 month ago
Created
1 month ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform