Package Health

mamura/simple-signature

A README and tests support integration, but the release lacks a license and the repository has no security policy. Its tiny footprint provides little evidence of durable support.

Latest v1.0.0PackagistPackagist

48%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

25

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

67

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

88

Health Score Breakdown

Release historydanger

This package has had only one release, about 16 months ago, with no releases in the last 12 months. That leaves maintenance and compatibility support largely unproven.

Repo commit activitydanger

There were no commits or active maintainers in the last three months. Combined with the single-release history, this is meaningful evidence that ongoing maintenance is uncertain.

Licensecaution

No license is declared, detected, or present in the package or repository. This creates a material adoption and redistribution concern.

Project backingcaution

The registry namespace and repository owner match a personal account, which is consistent ownership evidence but does not show organizational support.

Repo popularitycaution

The repository has zero stars and forks and only one watcher. Popularity is not required for health, but this provides little supporting evidence of sustained use or community resilience.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Mamura

Direct Dependencies

DependencyLast ReleaseScore
setasign/fpdi-tcpdf
Version ^2.3

Weekly Downloads

Info

Last Published
1 year ago
Created
1 year ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform