Package Health

hym/weather

The MIT declaration and repository tests provide a useful baseline, and no install-time scripts reduce integration risk. Three runtime dependencies, including PHPUnit and Mockery, make the package setup less tidy.

Latest 0.0.1PackagistPackagist

43%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

25

Dependencies
Dependencies
Evaluates the health and security of package dependencies

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

67

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

100

Health Score Breakdown

Release historydanger

The package has only one release, published on April 29, 2019, with no releases in roughly 7 years and 5 months. This is strong evidence of abandonment risk.

Repo commit activitydanger

The repository recorded no commits or active maintainers in the last 3 months, and its last push was roughly 6 years ago. That provides little evidence of ongoing maintenance.

Dependency profilecaution

The package declares three runtime dependencies, including PHPUnit and Mockery, which are normally development tools. That makes the dependency profile less focused and may add avoidable installation and maintenance burden.

Maintainerscaution

A single registry maintainer is a thin publishing base. The repository is user-owned rather than organization-backed, so there is no provided evidence of broader maintenance capacity.

Package scaffoldingcaution

The artifact includes a README and the repository has tests, while release notes document this version. However, the README is only 148 characters and leaves usage marked TODO, limiting consumer transparency.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

hym

Direct Dependencies

DependencyLast ReleaseScore
mockery/mockery
Version ^1.2
—
—
phpunit/phpunit
Version ^8.1
—
—
guzzlehttp/guzzle
Version ^6.3
—
—

Weekly Downloads

Info

Last Published
7 years ago
Created
7 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform