Package Health

mimmi20/ua-parser-interface

Healthy and actively released, with clear licensing and strong repository hygiene. The main caveats are that recent commits come from one contributor, the repository has no tests or security policy, and several workflows request write access.

Latest 7.0.4PackagistPackagist

76%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

94

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

67

Health Score Breakdown

Package scaffoldingcaution

The artifact includes a README, while both the artifact and repository lack tests and a changelog. The repository does use GitHub Releases, which helps partially offset the missing changelog, but the absence of tests remains a modest maintenance gap for a library.

Repo bus factorcaution

All 2 recent commits came from one contributor, giving the project a concentrated maintenance base. This increases continuity risk for a user-owned project.

Repo commit activitycaution

The repository had 2 commits in the last 3 months, so activity is present but relatively light. Recent release activity partly compensates for the low commit volume.

Security policycaution

The repository has no security policy. That is a transparency gap for reporting vulnerabilities, although active automated security scanning provides some compensation.

Token permissionscaution

All workflows declare permissions, but 4 of 8 request top-level write access while the other 4 are read-only. Explicit permissions are good hygiene, though the write-enabled workflows increase operational exposure.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Thomas Müller
Contributors

Direct Dependencies

DependencyLast ReleaseScore
mimmi20/ua-data-interface
Version ^3.0.0
mimmi20/browser-detector-versioninterface
Version ^2.0.2

Weekly Downloads

Info

Last Published
7 days ago
Created
1 year ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform