Package Health

liyu/signature

Latest v0.4.1PackagistPackagist

38%

Total Score

unhealthy

Risky: no release or commit activity since September 2018, indicating a strongly abandoned dependency.

Health Score Breakdown

Release historydanger

The package has 16 releases but none in the last 12 months; its latest release was about 8 years ago. This long publishing gap is strong evidence of abandonment risk.

Repo commit activitydanger

The repository recorded zero commits and zero active maintainers in the last 3 months, consistent with the release history and indicating no current maintenance capacity.

Maintainerscaution

Only one registry maintainer is listed. That is not inherently concerning for a user-owned project, but it leaves little visible publishing redundancy alongside the prolonged inactivity.

Repo toolingcaution

Composer is used for builds, but no security scanning tools are present. This is a hygiene gap for a package handling HMAC and RSA signing.

Repository archivedcaution

The repository is not archived, which is a modest positive, but its last push was about 8 years ago and does not offset the lack of recent activity.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Yu Li

Direct Dependencies

DependencyLast ReleaseScore
illuminate/support
Version ^5.5
—
—
illuminate/contracts
Version ^5.5
—
—

Weekly Downloads

Info

Last Published
8 years ago
Created
9 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform