Package Health

niangpro/tenancy

The source is tiny and has no visible security policy, so long-term support and reviewability remain limited. MIT licensing, a stable release, and no install hooks reduce adoption friction.

Latest v2.0.2PackagistPackagist

58%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

75

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

83

Health Score Breakdown

Package scaffoldingcaution

The published artifact has no README, tests, or changelog. Missing tests and changelog can be normal for a small published artifact, but the absent README weakens consumer guidance for this PHP library.

Release historycaution

The package is less than a day old, with only three releases and roughly four hours between releases. That shows active initial publishing but provides almost no evidence of sustained maintenance.

Repo commit activitycaution

There were no commits or active maintainers in the prior three months. Because the repository itself was only pushed less than a day ago, this is weak evidence of abandonment rather than a severe maintenance failure.

Repo package mentioncaution

The repository name does not exactly match the package name, while README mention status is unavailable. The mismatch may be ordinary naming for a related repository, so it is only a limited identity concern.

Repo toolingcaution

Composer is used as the build tool, but no security-scanning tool is present. The missing scanner is a modest hygiene gap for a package with no other observed build safeguards.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

NiangProgrammeur

Direct Dependencies

DependencyLast ReleaseScore
niangpro/core
Version self.version
—
—
niangpro/http
Version self.version
—
—
niangpro/database
Version self.version
—
—

Weekly Downloads

Info

Last Published
1 day ago
Created
1 day ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform