Package Health

leochenftw/ss-arsenal

The package offers almost no consumer documentation, and its 24 runtime dependencies increase upgrade and compatibility burden. Its repository is not archived and has Composer tooling, but release and commit activity has been absent for several years; pinning this version is prudent.

Latest 0.1.5PackagistPackagist

52%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Dependencies
Dependencies
Evaluates the health and security of package dependencies

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

75

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Dependency profilecaution

The package declares 24 runtime dependencies and no development dependencies, creating a comparatively large compatibility and maintenance surface for a small 24-file package.

Package scaffoldingcaution

The artifact includes a README, but it is only 34 characters and says “It doesn't...”, offering essentially no integration guidance. Missing tests and changelog files are normal for published artifacts and do not add concern here.

Release historycaution

The package has only 5 releases, with none in the last 12 months; the latest registry release was on October 23, 2022. This indicates a substantial maintenance gap for a library dependency.

Repo commit activitycaution

There were 0 commits and 0 active maintainers in the last 3 months, consistent with the long release gap. This raises abandonment risk, although the repository is not archived.

Security policycaution

The linked repository has no security policy. This is a transparency gap, though the absence is a secondary concern compared with the lack of recent maintenance evidence.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Leo Chen

Direct Dependencies

DependencyLast ReleaseScore
cocur/slugify
Version ^3.2
guzzlehttp/guzzle
Version ^7
cita/image-cropper
Version ^2.0.3
bummzack/sortablefile
Version ^2.0
silverstripe/tagfield
Version ^2.4

Weekly Downloads

Info

Last Published
4 years ago
Created
5 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform