Package Health

jardissupport/workflow

Directed workflow engine with status-based transitions, automatic data accumulation, and builder API

Latest v1.0.8PackagistPackagist

68%

Total Score

caution

Usable with caveats: active releases are offset by one-person maintenance and workflow security gaps.

Health Score Breakdown

Repo bus factorcaution

One contributor made all five commits in the last three months, creating a meaningful continuity risk. Organization backing provides some handoff capacity but does not replace a second active contributor.

Repo commit activitycaution

Five commits in three months show ongoing work, but the activity is modest and concentrated in one active maintainer.

Security policycaution

The repository has no published security policy, leaving vulnerability reporting and response expectations unclear.

Workflow auditcaution

All seven action references are unpinned, and the audit found a high-confidence template-injection issue in the release workflow. There is no untrusted checkout or pull-request-target trigger, so this is a hygiene and workflow-risk concern rather than a standalone severe verdict.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Jardis Development

Direct Dependencies

DependencyLast ReleaseScore
jardissupport/contracts
Version ^1.0 || ^2.0
—
—

Weekly Downloads

Info

Last Published
5 days ago
Created
2 months ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform