Package Health

nostriphant/nip-01

Nostr NIP-01 implementation in PHP

Latest 3.3.1PackagistPackagist

74%

Total Score

caution

Usable with caveats: maintenance is active, but all recent commits come from one contributor.

Health Score Breakdown

Repo bus factorcaution

All four commits in the last three months came from one contributor, leaving maintenance dependent on a single active person. Organization ownership provides some backing, but no second recent contributor is shown.

Repo toolingcaution

Composer is used for builds, but no security-scanning tool is reported. This is a modest transparency and maintenance gap rather than a severe risk.

Security policycaution

The repository has no security policy, so users are not given a documented channel or process for reporting vulnerabilities.

Workflow auditcaution

The only workflow was fully analyzed with no dangerous triggers, untrusted checkouts, script injection, or audit findings. Its single action use is unpinned, which is a supply-chain hygiene gap, while the absence of a top-level permissions block is acceptable on its own.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Rik Meijer

Direct Dependencies

DependencyLast ReleaseScore
nostriphant/secp256k1
Version ^0.1.0
—
—
nostriphant/functional
Version ^2.2
—
—

Weekly Downloads

Info

Last Published
3 months ago
Created
1 year ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform