Package Health

kislayphp/socket

The repository includes tests, a changelog, a security policy, and 12 commits in the last three months. The young release history, single active contributor, and unpinned workflow actions leave meaningful maintenance and build-integrity caveats.

Latest v1.0.0PackagistPackagist

68%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

88

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

83

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

100

Health Score Breakdown

Release historycaution

Only two releases exist across 188 days, with a median interval of about 156 days; this is limited evidence of release maturity for a young package.

Repo bus factorcaution

All 12 recent commits came from one contributor, creating a concentrated maintenance dependency; organization backing partly compensates but does not remove the continuity risk.

Repo popularitycaution

The repository has zero stars, forks, and watchers. Popularity is only supporting evidence, so this modestly limits external maturity evidence rather than determining the verdict.

Repo toolingcaution

Composer build tooling is present, but no security-scanning tools were detected, leaving a transparency and maintenance-hygiene gap.

Workflow auditcaution

Both workflows were analyzed without failed files or dangerous sinks, but all 9 action references are unpinned and one workflow grants top-level write permissions. These are build-integrity and permission-hygiene cautions, not severe risks on their own.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

KislayPHP Team

Direct Dependencies

No direct dependencies.

Weekly Downloads

Info

Last Published
1 month ago
Created
6 months ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform