Package Health

nicklasw/pogoprotos-php

The artifact contains a substantial generated protobuf tree and only two runtime dependencies. It has no install-time scripts, is not deprecated or archived, and uses Composer build tooling.

Latest v2.0.2PackagistPackagist

38%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

38

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

56

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

83

Health Score Breakdown

Licensedanger

No license is declared, and neither the package nor the linked repository contains a recognized license file. This creates a material legal and transparency concern for adoption.

Release historydanger

The package has had three releases, all around December 2016, and none in the last 12 months; its latest release is about nine years old. This is strong evidence of abandonment for a generated protocol library unless its API is permanently complete.

Repo commit activitydanger

The repository has zero commits and zero active maintainers in the last three months. With the last push about nine years ago, this is strong evidence that maintenance has stopped.

Maintainerscaution

One registry account has publish access. Because the linked repository is owned by the same individual, this reflects a thin but consistent maintainer base rather than an unexplained publishing mismatch.

Package scaffoldingcaution

The artifact has no README, tests, or changelog, and the repository reports none either. Tests and changelogs are not expected in generated packages, but the missing consumer-facing README weakens integration transparency.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Nicklas Wallgren

Direct Dependencies

DependencyLast ReleaseScore
nicklasw/protobuf
Version ^v3.1
—
—

Weekly Downloads

Info

Last Published
9 years ago
Created
9 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform