Package Health

mleczakm/swoole-bundle-observability

This is a very new, pre-1.0 package with five releases published within roughly one day, so its long-term maintenance, API stability, and production maturity are not yet established. The linked repository is active and correctly associated with the package, includes tests, CI/build tooling, a changelog, a license, security scanning, and read-only workflow permissions; it is not archived or deprecated and has no install-time scripts. The main concerns are the zero observed commits and contributors in the last three months (consistent with the package being newly created), a single registry maintainer, no security policy, and a relatively broad runtime dependency set. It may be reasonable to trial with an explicit upgrade policy, but it is not yet a low-risk foundational dependency.

Latest v0.1.4PackagistPackagist

62%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Dependencies
Dependencies
Evaluates the health and security of package dependencies

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

83

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

90

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Michał Mleczko

Direct Dependencies

DependencyLast ReleaseScore
psr/log
Version ^3.0
sentry/sentry
Version ^4.0
symfony/config
Version ^7.4 || ^8.0
symfony/filesystem
Version ^7.4 || ^8.0
symfony/http-kernel
Version ^7.4 || ^8.0

Weekly Downloads

Info

Last Published
2 days ago
Created
2 days ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform