Package Health

like4more/composer

Risky to adopt without verifying that it still meets your needs: the package has had no release or commit activity for about five years and has no consumer README. It is not deprecated or archived, but its tiny, single-maintainer project shows strong abandonment risk.

Latest v1.0.4PackagistPackagist

45%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

25

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

69

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Release historydanger

The latest release was published about five years ago, with no releases in the last 12 months. The five historical releases show the package reached a stable version, but there is no evidence of ongoing maintenance.

Repo commit activitydanger

The repository recorded zero commits and zero active maintainers in the last three months, consistent with the latest push having been about five years ago. This is strong evidence that fixes and updates may not be available.

Maintainerscaution

Only one registry publishing account is listed, leaving little visible publishing redundancy. This is more concerning alongside the repository's prolonged inactivity, although the repository owner does match the registry namespace.

Package scaffoldingcaution

The published artifact has no README, which makes integrating even this small library less transparent; the absence of tests and a changelog is not concerning for a compiled or minimal package, and the repository does use GitHub Releases.

Repo popularitycaution

The repository has zero stars and forks and only one watcher, providing no community evidence to offset the lack of recent maintenance. Low popularity alone is not disqualifying for a small package.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

like4more

Direct Dependencies

No direct dependencies.

Weekly Downloads

Info

Last Published
5 years ago
Created
5 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform