Package Health

mwguerra/web-terminal-stream

This release appears suitable for adoption, with a real and well-matched source repository, MIT licensing, a substantial artifact, documented changelog and security policy, active recent releases, and evidence of repository tests and build tooling. The main reservations are that the project is very young at 32 days, all 12 recent commits come from one contributor, repository popularity is minimal, three pull requests remain unmerged, and its workflow does not declare top-level token permissions. These factors indicate elevated continuity and operational-hygiene risk rather than abandonment, since the repository is not archived and release activity is recent and frequent.

Latest v1.1.4PackagistPackagist

78%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

70

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

89

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

80

Health Score Breakdown

Lifecycle scriptscaution

A post-autoload-dump lifecycle script is present, which adds some install-time execution surface, but this is a single conventional Composer lifecycle hook rather than evidence of excessive scripting.

Maintainerscaution

Only one registry publishing maintainer is listed, matching the single-user repository ownership but leaving limited publishing redundancy.

Project backingcaution

The source repository is owned by an individual user rather than an organization, so the concentrated maintainer and bus-factor risks are not offset by evident organizational backing.

Release historycaution

Seven releases in 32 days, with a median interval of about 2.7 days and a release as recently as the assessment date, show strong current activity; the short history limits maturity evidence.

Repo bus factorcaution

One contributor made all 12 commits in the last three months, creating a material single-maintainer continuity risk without organizational backing.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

mwguerra

Direct Dependencies

DependencyLast ReleaseScore
react/socket
Version ^1.17
—
—
laravel/prompts
Version ^0.3.0
—
—
ratchet/rfc6455
Version ^0.4.0
—
—
react/event-loop
Version ^1.6
—
—
livewire/livewire
Version ^4.0
—
—

Weekly Downloads

Info

Last Published
26 days ago
Created
1 month ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform