Package Health

mpociot/slack-client

Documentation, tests, a changelog, and a clear MIT license make the project easier to evaluate. Its release and commit activity are stale, while the runtime dependency set adds maintenance exposure for new integrations.

Latest 1.2.0PackagistPackagist

46%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

33

Dependencies
Dependencies
Evaluates the health and security of package dependencies

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

75

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

83

Health Score Breakdown

Release historydanger

The latest release was published in October 2018, with no releases in the last 12 months; this is strong evidence of abandonment for a client library.

Repo commit activitydanger

There were zero commits and zero active maintainers in the last three months, directly reinforcing the abandonment concern from the stale release history.

Dependency profilecaution

Seven runtime dependencies, including websocket, event-loop, promise, and HTTP components, create a relatively broad compatibility and maintenance surface for an old library.

Project backingcaution

The repository is owned by an individual account rather than an organization, so there is no organizational backing signal to compensate for the thin maintenance evidence.

Repo issue activitycaution

There were no new or closed issues or pull requests in the last month, and eight pull requests remain open; this suggests little current project movement.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Stephen Coakley

Direct Dependencies

DependencyLast ReleaseScore
mpociot/phpws
Version ^2.0
—
—
react/promise
Version ^2.2
—
—
react/event-loop
Version ^1.0 || ^0.5 || ^0.4
—
—
guzzlehttp/guzzle
Version ~6.0
—
—
evenement/evenement
Version ~3.0
—
—

Weekly Downloads

Info

Last Published
7 years ago
Created
11 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform