Package Health

karamel/cookie

Its six-file codebase has no tests or security policy, and the repository shows no meaningful community activity. The MIT declaration, matching repository, and minimal dependency footprint reduce uncertainty but do not offset the long abandonment risk.

Latest v0.1.7PackagistPackagist

42%

Total Score

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

71

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

83

Health Score Breakdown

Release historydanger

The latest release was on December 24, 2018, with no releases in the last 12 months; roughly 7 years and 9 months without a release is a strong abandonment concern.

Package scaffoldingcaution

The package includes a short README, but it has no tests or changelog, and the repository also has no tests or changelog. For a small library this weakens verification and maintenance transparency.

Repo popularitycaution

The repository has 0 stars, 0 forks, and 1 watcher, providing no meaningful evidence of community adoption or external maintenance pressure.

Security policycaution

The repository has no security policy, leaving vulnerability reporting and response expectations undocumented. This is a transparency gap, though it is less severe than the absence of maintenance activity.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Amir Kalantar

Direct Dependencies

DependencyLast ReleaseScore
karamel/encrypt
Version v0.1.7
—
—

Weekly Downloads

Info

Last Published
7 years ago
Created
7 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform