Package Health

josegarcia/podbean

The package includes tests, uses Composer, and declares MIT licensing. Its single-maintainer footprint and absent README reduce confidence for a library consumers must integrate.

Latest 1.1.0PackagistPackagist

44%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

33

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

78

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Repo commit activitydanger

There were zero commits and zero active maintainers in the last three months, with the last push nearly four years ago. This is the clearest maintenance and abandonment concern.

Maintainerscaution

Only one registry maintainer is listed. That is a limited publishing base, and the repository's lack of recent activity provides no compensating evidence of an active team.

Package scaffoldingcaution

The artifact and repository contain tests, and this exact version has a GitHub release; the missing README and changelog are transparency gaps for a library, though the release itself is documented by its GitHub presence.

Project backingcaution

The repository owner is an individual user rather than an organization. This is not inherently unhealthy, but it offers no organizational backing to offset the narrow maintainer base.

Release historycaution

Only three releases were published, all concentrated in October 2022, with no release in nearly four years and none in the last 12 months. This is strong evidence of stagnation for an API integration library.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Jose Garcia

Direct Dependencies

DependencyLast ReleaseScore
guzzlehttp/guzzle
Version ^7.5
—
—

Weekly Downloads

Info

Last Published
3 years ago
Created
3 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform