Package Health

lakshmaji/clock

Risky to adopt: the package has had no release or repository activity since December 2017, and its small repository has no tests or README. It is not deprecated or archived, but the long abandonment period makes ongoing compatibility and maintenance unlikely.

Latest 1.0.1PackagistPackagist

35%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

0

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

40

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Health Score Breakdown

Release historydanger

The latest release was in December 2017, about 8 years and 9 months ago, with no releases in the last 12 months. This is strong evidence of abandonment for a library dependency.

Repo commit activitydanger

The repository recorded zero commits and zero active maintainers in the last 3 months, consistent with the release history and indicating no current maintenance capacity.

Package scaffoldingcaution

The package has no README, tests, or changelog, while the repository also reports no tests or changelog. The missing consumer documentation and tests are meaningful gaps for a library, even though tests and changelogs are not expected inside every published artifact.

Repo popularitycaution

The repository has zero stars and forks and only one watcher, offering no supporting evidence of broad project use or community attention. Low popularity alone is not decisive, but it reinforces the maintenance concerns here.

Repo toolingcaution

Composer is used as the build tool, but no security-scanning tooling is reported. This is a transparency gap, though it is less significant than the package's prolonged inactivity.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

lakshmaji

Direct Dependencies

DependencyLast ReleaseScore
spatie/opening-hours
Version ^1.4
—
—

Weekly Downloads

Info

Last Published
8 years ago
Created
8 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform