Package Health

h4kuna/memoize

Usable release with an MIT license declaration and a recent registry release, but the project looks quiet (no commits/issues recently) and the CI audit shows unpinned GitHub Action uses. Pin/verify the workflow inputs if you adopt this now.

Latest v0.1.8PackagistPackagist

65%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

75

Health Score Breakdown

Package scaffoldingcaution

The artifact itself lacks a readme, tests, and changelog, which can hurt consumer self-service, even if the repository contains tests. The missing changelog/readme in the published artifact is a real usability/maintainer-information gap.

Repo commit activitycaution

There were zero commits in the last 3 months and zero active maintainers detected in that window, which raises abandonment/slow-maintenance risk despite the older recent release.

Version stabilitycaution

The version is not treated as a stable major (consistent with a 0.x line) even though it is not marked as a prerelease. That’s normal for early-stage libraries, but it keeps the risk profile from looking fully mature.

Workflow auditcaution

The audit found no direct high-risk workflow findings, but it reports 9/9 GitHub Action uses as unpinned, which increases supply-chain risk for CI execution. The “action definitions analyzed” count is 0, so treat the audit as hygiene rather than definitive.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Milan Matějček

Direct Dependencies

DependencyLast ReleaseScore
psr/simple-cache
Version ^3.0
—
—

Weekly Downloads

Info

Last Published
7 months ago
Created
7 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform