Package Health

khs1994/example

The source is licensed, tested, documented, and backed by an unarchived organization repository. Its Composer install script fits a project template. All four workflow actions are unpinned and the repository has no security policy.

Latest 18.06.02PackagistPackagist

60%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

75

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

80

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Release historydanger

The latest release was published about 8 years ago, with no releases in the last 12 months. This is a substantial freshness and abandonment concern, even though the linked repository was pushed more recently.

Repo commit activitycaution

There were no commits or active maintainers in the last 3 months, which weakens the evidence of ongoing maintenance despite the repository's more recent push date.

Security policycaution

The repository has no security policy. This is a transparency and reporting gap, but it is moderated by the package's clear license, documentation, tests, and repository backing.

Workflow auditcaution

The workflow audit completed fully with no untrusted checkouts, script injection, or high-confidence findings. However, all 4 action references are unpinned, leaving avoidable build reproducibility and action-update risk.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

khs1994

Direct Dependencies

DependencyLast ReleaseScore
khs1994/curl
Version ~18.06.0
—
—
pimple/pimple
Version ~3.0
—
—

Weekly Downloads

Info

Last Published
8 years ago
Created
8 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform