Package Health

kuaukutsu/queue-core

It has tests, a clear MIT license, and regular releases over its first year. The single-user project has gone three months without commits, while its release workflow needs stronger pinning.

Latest 0.6.1PackagistPackagist

64%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

100

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Health Score Breakdown

Maintainerscaution

One registry account has publishing access, and the project is backed by a personal repository rather than an organization; this leaves a thin apparent maintainer base.

Repo commit activitycaution

There were no commits and no active maintainers in the last three months, which is a meaningful maintenance concern despite the recent release history.

Security policycaution

The repository has no published security policy, reducing transparency for vulnerability reporting and maintenance expectations.

Workflow auditcaution

All 10 analyzed action references are unpinned, weakening build reproducibility. The reported cache-poisoning issue has low confidence, so it is treated as hygiene rather than a severe risk; the audit itself is complete.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Dmitriy Krivopalov

Direct Dependencies

DependencyLast ReleaseScore
amphp/sync
Version ^2.3
amphp/cache
Version ^2.0
ramsey/uuid
Version ^4.9
psr/container
Version ^2.0

Weekly Downloads

Info

Last Published
8 months ago
Created
1 year ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform