Package Health

mosweed/mosweed_cms

Usable with caveats: the release is licensed, documented, non-deprecated, and backed by a matching repository, but maintenance appears stalled. There have been no registry releases in about 17 months and no repository commits in the last 3 months, with no security policy or automated security scanning.

Latest v1.1PackagistPackagist

60%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

81

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Project backingcaution

The registry namespace and repository owner match, but the repository is user-owned rather than organization-owned. This supports identity consistency while offering limited evidence of institutional backing.

Release historycaution

Only three releases exist, and there have been no releases in the last 12 months; the latest release was about 17 months ago. This indicates a slow or stalled maintenance cycle for a package with a two-year history.

Repo commit activitycaution

The repository recorded zero commits and zero active maintainers in the last 3 months. Combined with the old last push, this is a meaningful maintenance and abandonment concern.

Repo toolingcaution

Composer build tooling is present, but no security scanning tools were detected. That weakens ongoing supply-chain hygiene, although it is not by itself evidence that the package is unsafe.

Repository archivedcaution

The linked repository is not archived, but its last push was about 17 months ago, so the unarchived status does not offset the evidence of inactivity.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Mohmad Yazan Sweed
Hamzah Sari

Direct Dependencies

DependencyLast ReleaseScore
livewire/livewire
Version ^3.4
—
—
illuminate/contracts
Version ^8.12|^9.0|^10.0|^11.0|^12.0
—
—

Weekly Downloads

Info

Last Published
1 year ago
Created
2 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform