Package Health

miklcct/national_rail_timetable

This is a generally healthy and actively maintained release: it has 25 releases over roughly 3.8 years, 9 releases in the last 12 months, a stable non-prerelease version, a non-archived repository, and recent commit activity. The main concerns are that all 19 commits in the last 3 months came from one contributor, the repository has minimal adoption, no tests or security scanning were observed, and no security policy is provided. These reduce resilience and transparency but do not outweigh the strong release cadence and recent maintenance evidence.

Latest 3.5.0PackagistPackagist

78%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

63

Dependencies
Dependencies
Evaluates the health and security of package dependencies

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

83

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

90

Health Score Breakdown

Dependency profilecaution

The package declares 13 runtime dependencies, including application, database, HTTP, caching, logging, and domain-data components. This is a meaningful dependency surface to maintain, but the signal does not show an excessive or obviously anomalous profile.

Package scaffoldingcaution

A README and changelog are present, but neither the package nor repository contains tests. For a web application this is a genuine maintenance and regression-risk gap, although the documentation provides useful deployment and operation guidance.

Project backingcaution

The repository is owned by the individual user miklcct rather than an organization. This is consistent with the single-contributor activity and means there is no visible organizational backing to compensate for maintainer concentration.

Repo bus factorcaution

One contributor made all 19 commits in the last 3 months, producing a bus factor of one. Because the repository owner is an individual rather than an organization, this is a material continuity risk despite the strong recent activity.

Repo issue activitycaution

There are no open issues or pull requests and no issue or pull-request activity in the last month. This is not negative by itself because it may reflect a small, quiet project, but it provides little evidence of community engagement.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

DependencyLast ReleaseScore
filp/whoops
Version ^2.14
php-di/php-di
Version ^6.4
symfony/cache
Version ^6.1
mongodb/mongodb
Version ^2.0
monolog/monolog
Version ^3.10

Weekly Downloads

Info

Last Published
16 days ago
Created
3 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform