Package Health

helsingborg-stad/broken-link-detector

This is a mature, actively released package with 77 releases over more than 10 years, 11 releases in the last 12 months, a stable non-prerelease version, an active non-archived organization-owned repository, and substantial test and build structure. The main concern is that the repository reports no commits or active maintainers in the last 3 months despite the very recent release, which may indicate a temporarily inactive development period or release automation rather than sustained ongoing work. Missing repository security policy and unspecified workflow token permissions also reduce transparency and CI hardening, but there are no detected dangerous workflow patterns and the package is not deprecated.

Latest 4.2.32PackagistPackagist

72%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

67

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

100

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

80

Health Score Breakdown

Repo commit activitycaution

The repository reports zero commits and zero active maintainers in the last 3 months. This is the clearest abandonment concern, although it is partly offset by the release published very recently and the long, frequent release history.

Repo issue activitycaution

There is one open issue and six open pull requests, but no issues or pull requests were opened or merged in the last month. This is a modest maintenance concern, though the broader release history is strong.

Security policycaution

The repository has no security policy. This weakens vulnerability-reporting transparency, although the repository does use automated security scanning.

Token permissionscaution

All four workflows lack top-level token permissions, and only one specifies job-level permissions. Explicit least-privilege declarations would provide stronger CI hardening, despite the absence of detected dangerous workflow patterns.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Sebastian Thulin
Niclas Norin
Thor Brink

Direct Dependencies

DependencyLast ReleaseScore
symfony/polyfill-intl-idn
Version 1.38.1
—
—
helsingborg-stad/wpservice
Version ^2.0
—
—
helsingborg-stad/acfservice
Version ^1.3.0
—
—
helsingborg-stad/wputilservice
Version ^0.3
—
—
helsingborg-stad/acf-export-manager
Version >=1.0.0
—
—

Weekly Downloads

Info

Last Published
26 days ago
Created
10 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform