Package Health

jan-herman/kirby-shared-blueprints

This release appears suitable to depend on: it is actively released, stable, non-deprecated, backed by a non-archived repository, and has a clear MIT license. The main reservations are that recent repository activity consists of only one commit from a single contributor, there are no repository tests or security-scanning tools, and no security policy is published; these reduce maintenance resilience and transparency but do not outweigh the strong release cadence and current repository state. The package is also small and primarily composed of Kirby blueprints and configuration, so the absence of tests is less concerning than it would be for a complex library.

Latest 3.3.2PackagistPackagist

78%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

63

Dependencies
Dependencies
Evaluates the health and security of package dependencies

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

88

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

90

Health Score Breakdown

Dependency profilecaution

The package declares nine runtime dependencies, including Kirby CMS and several field/plugin packages. This is a meaningful integration surface and can increase compatibility maintenance burden, but the signal does not show an excessive or obviously unmanaged dependency set.

Package scaffoldingcaution

A changelog is present in both the artifact and repository, but there is no README content beyond a short title and neither side contains tests. For a small blueprint/configuration package, missing tests are partly expected, while the very limited documentation remains a modest hygiene gap.

Project backingcaution

The repository is owned by an individual user rather than an organization, so there is no organizational succession evidence to offset the concentrated maintainer base.

Repo bus factorcaution

All recent commits come from a single contributor with a 100% share, leaving the project dependent on one maintainer and increasing continuity risk.

Repo commit activitycaution

The repository recorded one commit in the last three months from one active maintainer. Recent activity exists, but the low volume indicates limited demonstrated maintenance capacity.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Jan Herman

Direct Dependencies

DependencyLast ReleaseScore
getkirby/cli
Version ^1.8
getkirby/cms
Version ^5.0
bnomei/kirby-janitor
Version ^5.0
tobimori/kirby-icon-field
Version ^2.3
sylvainjule/colorextractor
Version ^2.0

Weekly Downloads

Info

Last Published
9 days ago
Created
3 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform