Package Health

kaadon/helper

The artifact contains tests and a declared Apache-2.0 license, with no install-time scripts. Its seven runtime requirements increase integration burden, and the single-user project has no security policy.

Latest 1.0.8PackagistPackagist

43%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

25

Dependencies
Dependencies
Evaluates the health and security of package dependencies

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

64

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Release historydanger

The latest release was over a year ago, and there were no releases in the last 12 months. This is strong evidence of stalled maintenance for a package released 12 times in its first period.

Repo commit activitydanger

There were no commits and no active maintainers in the last three months, matching the stale release history and indicating little current maintenance capacity.

Dependency profilecaution

Seven runtime requirements, including several PHP extensions and an FFmpeg library, create a relatively demanding integration footprint for a small helper package.

Package scaffoldingcaution

The artifact and repository include tests, which is a positive quality signal. The missing README reduces consumer documentation for a library, while the missing changelog is normal packaging practice.

Project backingcaution

The repository is owned by an individual user rather than an organization. This does not prove abandonment, but it offers less visible backing to offset the single-maintainer and inactive-project concerns.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

kaadon

Direct Dependencies

DependencyLast ReleaseScore
php-ffmpeg/php-ffmpeg
Version ^1.3
—
—

Weekly Downloads

Info

Last Published
1 year ago
Created
2 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform