Package Health

jdr/event-recorder-tactician-bridge

Its only release was published nearly nine years ago, with no recent commits or active maintainers. The package is clearly identified, licensed, documented, and small in scope, but its maintenance outlook is poor.

Latest 0.0.1PackagistPackagist

38%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

72

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

88

Health Score Breakdown

Maintainerscaution

Only one registry account has publishing access. That is a thin operational base for a package with no recent release activity, though registry access alone does not establish who actively maintains it.

Project backingcaution

The repository is owned by an individual rather than an organization. That is not inherently unhealthy, but it provides no visible organizational backing to offset the single-maintainer and inactivity concerns.

Release historycaution

There has been only one release, on 9 December 2017, with none in the last 12 months. Nearly nine years without another release is strong evidence of abandonment risk.

Repo commit activitycaution

The repository had zero commits and zero active maintainers in the last three months. Combined with the old release, this indicates a sustained lack of maintenance capacity.

Repo popularitycaution

The repository has zero stars and forks and only one watcher. Popularity is supporting evidence rather than a verdict, but these figures provide little evidence of active community support.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Johan de Ruijter

Direct Dependencies

DependencyLast ReleaseScore
league/tactician
Version ~1.0
—
—
jdr/event-recorder
Version ^0.0.2
—
—

Weekly Downloads

Info

Last Published
8 years ago
Created
8 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform