Package Health

hksagentur/kirby-vite

Clear licensing, a useful README, release notes, and a modest dependency set make adoption straightforward. The organization-backed repository is not archived and uses Dependabot, but ongoing maintenance and workflow pinning need attention.

Latest 1.8.0PackagistPackagist

68%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

75

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

94

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Health Score Breakdown

Repo commit activitycaution

There were no commits from any active maintainer during the last three months, leaving current maintenance capacity uncertain after the latest release.

Repo popularitycaution

The repository has no stars or forks and one watcher. This offers little supporting evidence of broad adoption, but popularity is not decisive for a small, focused package.

Security policycaution

The repository has no security policy. This is a transparency gap, though it is a modest concern for a small integration package.

Workflow auditcaution

The single workflow was fully analyzed with no dangerous triggers, sinks, or audit findings, and it scopes permissions at job level. All 4 action references are unpinned, creating a workflow supply-chain hygiene gap.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Daniel Weidner

Direct Dependencies

DependencyLast ReleaseScore
getkirby/composer-installer
Version ^1.2
—
—

Weekly Downloads

Info

Last Published
5 months ago
Created
3 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform