Package Health

mynaparrot/plugnmeet-sdk

This is a healthy, actively maintained release with a strong release cadence, stable versioning, current repository activity, usable documentation, changelog, repository tests, and no deprecation or archival indicators. The main adoption risks are concentrated maintenance in one recent contributor, limited repository popularity, absent security scanning and security policy, and incomplete workflow permission hardening; these warrant operational caution but do not outweigh the package's sustained release and development activity. The linked repository also explicitly mentions the package, supporting repository identity and transparency.

Latest 2.2.7PackagistPackagist

82%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

80

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

89

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

80

Health Score Breakdown

Repo bus factorcaution

One contributor made all 15 commits in the last three months, producing a top-contributor share of 100%. Organization backing provides some handoff capacity, but no second recent contributor is shown, so continuity risk remains.

Repo commit activitycaution

There were 15 commits in the last three months, showing active development, but all were made by one active maintainer. Activity is healthy while contributor breadth remains limited.

Repo popularitycaution

The repository has modest visibility with 11 stars, 10 forks, and 1 watcher. This limits popularity-based corroboration but is supporting evidence only and does not undermine the observed maintenance record.

Repo toolingcaution

Composer build tooling is present, but no repository security scanning tools are reported. The missing scanning reduces assurance around ongoing supply-chain hygiene without indicating abandonment.

Security policycaution

The repository has no SECURITY.md or other detected security policy, leaving vulnerability reporting and response expectations undocumented.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Jibon Costa

Direct Dependencies

DependencyLast ReleaseScore
ramsey/uuid
Version 4.9.3
—
—
google/protobuf
Version 5.36.1
—
—
firebase/php-jwt
Version 7.1.0
—
—
guzzlehttp/guzzle
Version 7.15.5
—
—

Weekly Downloads

Info

Last Published
24 days ago
Created
4 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform