Package Health

javareact/cq-api

It includes tests, a README, and a clear MIT license. Its small project footprint and lack of a security policy offer little evidence of ongoing oversight.

Latest 2.0.1PackagistPackagist

58%

Total Score

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

93

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Release historycaution

The package has only 3 releases, with none in the last 12 months, and its latest release was over 5 years ago. This substantially raises maintenance and abandonment concerns.

Security policycaution

The linked repository has no security policy, leaving no documented channel or process for reporting and handling vulnerabilities. This is a transparency and maintenance gap.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

DependencyLast ReleaseScore
psr/log
Version *
—
—
guzzlehttp/guzzle
Version *
—
—

Weekly Downloads

Info

Last Published
5 years ago
Created
6 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform