Package Health

liberusoftware/sessions-devices-filament

The project is young but actively developed, with two contributors and one carrying most commits. Missing security guidance and unpinned workflow actions reduce transparency and build hygiene.

Latest 1.4.1PackagistPackagist

78%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

83

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

92

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Health Score Breakdown

Release historycaution

The package is only 43 days old, so its long-term maintenance record is limited, but six releases and recent activity show active early development.

Repo bus factorcaution

Two contributors are active, but one accounts for 80% of recent commits, leaving maintenance somewhat dependent on a single contributor.

Security policycaution

The repository has no security policy, which weakens vulnerability-reporting transparency, though this is a hygiene gap rather than evidence of abandonment.

Workflow auditcaution

All three workflows were analyzed without injection or high-severity findings, and none grants top-level write access. However, all three action references are unpinned, reducing build reproducibility and supply-chain hygiene.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

DependencyLast ReleaseScore
filament/filament
Version ^5.0
liberusoftware/sessions-devices
Version ^1.0

Weekly Downloads

Info

Last Published
1 month ago
Created
1 month ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform