Package Health

kyzone/es-utility

The repository has no security policy or automated security scanning, while its README, MIT license, and changelog support basic transparency. The package is not deprecated or archived, but its small public footprint limits confidence in long-term support.

Latest 1.0.7PackagistPackagist

63%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

83

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Project backingcaution

The repository is owned by an individual account rather than an organization, so there is no visible organizational backing to compensate for the small maintainer or community footprint.

Release historycaution

The latest release was in February 2024, with no releases in the last 12 months, so maintenance appears to have slowed substantially. Eight releases over roughly four years provide some history but do not offset the current gap.

Repo popularitycaution

The repository has zero stars and forks and one watcher. Popularity is only supporting evidence, but this very small public footprint limits confidence in community support.

Repo toolingcaution

Composer is used for builds, but no security-scanning tooling was detected. That is a transparency and maintenance gap for a package with 14 runtime dependencies.

Security policycaution

The repository has no security policy, leaving no documented channel or process for reporting vulnerabilities.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

huang

Direct Dependencies

DependencyLast ReleaseScore
easyswoole/jwt
Version >=1.1
—
—
easyswoole/log
Version >=1.0
—
—
easyswoole/orm
Version >=1.4
—
—
easyswoole/rpc
Version 5.x
—
—
easyswoole/task
Version >=1.1
—
—

Weekly Downloads

Info

Last Published
2 years ago
Created
4 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform