Package Health

microweber-deps/filament-modules

Usable with caveats: the package is licensed, documented, backed by an organization, and has repository tests and security tooling, but it has only one release and no commits or active maintainers for about 14 months. Review its compatibility carefully before adopting it as a long-term dependency.

Latest 1.0PackagistPackagist

58%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

78

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

67

Health Score Breakdown

Repo commit activitydanger

The repository recorded zero commits and zero active maintainers during the last three months. Combined with the single-release history, this is a meaningful maintenance and abandonment concern.

Dangerous workflowscaution

One of five workflows uses pull_request_target for Dependabot auto-merge, which warrants review because that trigger can carry elevated workflow risk; no untrusted checkout or script-injection patterns were detected.

Release historycaution

There has been only one release, published about 14 months ago, with no releases in the last 12 months. This leaves little evidence of an established release process or ongoing compatibility work.

Repo popularitycaution

The repository has zero stars, forks, and watchers. This is weak supporting evidence and is not decisive by itself, but it offers no external adoption signal to offset the inactive history.

Repository archivedcaution

The linked repository is not archived, although its last push was about 14 months ago, consistent with the lack of recent release activity.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Sam Maosa

Direct Dependencies

No direct dependencies.

Weekly Downloads

Info

Last Published
1 year ago
Created
1 year ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform