Package Health

mralaminahamed/fluent-cart-stubs

Usable with caveats: the repository is active, the package is licensed, and its build and test structure is clear. It is only 42 days old, all recent commits come from one maintainer, and the repository lacks a security policy.

Latest v1.6.4PackagistPackagist

68%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

63

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

88

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

80

Health Score Breakdown

Maintainerscaution

Only one registry account can publish releases. This is a modest continuity concern, although the linked repository shows the same person actively maintaining the project.

Project backingcaution

The repository is owned by an individual rather than an organization, so the single-maintainer and single-contributor concentration is not offset by visible organizational backing.

Release historycaution

The package is young at 42 days but has 48 releases and a release as recently as the assessment date. The very frequent releases suggest active publishing, though they provide limited evidence of long-term stability.

Repo bus factorcaution

All 12 recent commits were made by one contributor, so maintenance depends entirely on that person and has a meaningful continuity risk.

Repo toolingcaution

The repository uses Composer and contains build tooling, but no security-scanning tools were detected. For a generated stub package this is a hygiene gap rather than evidence of abandonment.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Al Amin Ahamed

Direct Dependencies

DependencyLast ReleaseScore
php-stubs/wordpress-stubs
Version ^5.3 || ^6.0 || ^7.0
—
—

Weekly Downloads

Info

Last Published
13 days ago
Created
1 month ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform