Package Health

graze/config-validation

Its tiny audience and no commits in the past three months limit evidence of broad support. Unpinned CI actions and no security scanning are modest hygiene concerns, while the documented tests and release notes help offset them.

Latest 1.0.0PackagistPackagist

76%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

75

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

83

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

83

Health Score Breakdown

Release historycaution

The package has existed for about 9 years but only four releases, with a median interval of about 308 days. A release within the last year shows it is not abandoned, though development is infrequent.

Repo commit activitycaution

There were no commits and no active maintainers in the past three months. The recent release provides some counterevidence, but ongoing maintenance activity is currently thin.

Repo popularitycaution

The repository has one star and no forks, indicating very limited public adoption. Popularity is only supporting evidence, so this lowers confidence in community support without making the package unfit.

Repo toolingcaution

Composer and Make are used for project tooling, but no security-scanning tool was detected. The missing scanner is a modest transparency and hygiene gap.

Security policycaution

The repository has no security policy. This limits the project's stated process for receiving and handling vulnerability reports.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Harry Bragg
Graze Developers

Direct Dependencies

DependencyLast ReleaseScore
respect/validation
Version ^2.2

Weekly Downloads

Info

Last Published
3 months ago
Created
8 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform