Package Health

nueip/helpers

The package includes tests, a matching MIT license, and release notes for this version. Its repository also lacks a security policy and security-scanning tools, while a credentials-named test file deserves review before adoption.

Latest 1.17.1PackagistPackagist

58%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

75

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

88

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

67

Health Score Breakdown

Package file treecaution

The package contains source files, tests, and documentation, but also includes tests/credentials/encryptToken.json. The filename alone does not prove exposed secrets, but it warrants checking the artifact contents before depending on it.

Release historycaution

The package has 32 releases over about seven years, but none in the last 12 months; the latest release was about 18 months ago. This points to slowing maintenance despite a previously regular median interval of about 16 days.

Repo commit activitycaution

The repository recorded no commits and no active maintainers in the last three months, consistent with the long release gap. This materially raises abandonment risk.

Repo toolingcaution

Composer build tooling is present, but no security-scanning tools were detected. The build setup is established, though security oversight is limited.

Security policycaution

The repository has no published security policy, leaving vulnerability reporting and response expectations unclear. This is a transparency gap for a library containing encryption and security helpers.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

RD Team

Direct Dependencies

DependencyLast ReleaseScore
robthree/twofactorauth
Version ^1.7
—
—
marsapp/timeperiodhelper
Version >=0.7
—
—

Weekly Downloads

Info

Last Published
1 year ago
Created
7 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform