Package Health

manaf/test-repo-combined

Risky to depend on: the package has had no release in nearly five years and provides only a three-file artifact with a placeholder README. No source repository is declared, leaving maintenance and provenance difficult to verify, despite a stable version, declared license, and no install scripts.

Latest 4.1.0PackagistPackagist

38%

Total Score

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

70

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Release historydanger

The package was released three times around October 2021, but has had no release in nearly five years. That prolonged inactivity is a meaningful abandonment risk for a dependency.

Package file treecaution

The artifact contains only .gitignore, README.md, and composer.json, with no apparent source files or tests. This unusually thin package structure makes it difficult to verify what consumers receive.

Package scaffoldingcaution

A README is present, but its 565 characters are an unfilled setup template rather than usable integration or maintenance documentation. The absence of tests and a changelog in the published artifact is normal packaging practice and is not penalized.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

DependencyLast ReleaseScore
manaf/test-repo-reviews
Version 4.1.0
—
—
manaf/test-repo-messaging
Version 4.1.0
—
—

Weekly Downloads

Info

Last Published
4 years ago
Created
4 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform