Package Health

kubawerlos/composer-require-better

The MIT license, readable documentation, tests in the repository, and a matching source project improve transparency. The package has no recent registry releases and is marked abandoned, so adopting it creates substantial maintenance risk.

Latest v1.5.0PackagistPackagist

20%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

71

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

83

Using this package? Scan for Free

Health Score Breakdown

Registry deprecationdanger

Packagist marks the entire package abandoned, with no replacement specified. This is a direct warning against taking a new dependency and outweighs the repository's limited recent activity.

Release historydanger

The latest registry release was in April 2022, with no releases in the last 12 months. That long release gap materially increases abandonment and compatibility risk.

Project backingcaution

The repository and registry are owned by the same individual account rather than an organization. This is consistent ownership, but it provides no organizational handoff capacity.

Repo bus factorcaution

All recent repository commits came from one contributor, leaving maintenance concentrated in a single person. The matching repository provides some context, but there is no broader contributor base shown here.

Repo commit activitycaution

The repository recorded only 1 commit from 1 active maintainer in the last 3 months. This shows some activity but does not offset the package's abandoned registry status or long release gap.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Kuba Werłos

Direct Dependencies

No direct dependencies.

Weekly Downloads

Info

Last Published
4 years ago
Created
6 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform