Package Health

onetoweb/mybusiness

The package is straightforward to consume and has a clear MIT license, README, and release notes. Its organization-backed repository remains active, but maintenance depends on a single recent contributor and there is no security policy.

Latest v1.0.3PackagistPackagist

68%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

67

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

86

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Release historycaution

The package has existed since 2020 but has only four releases, with a median interval of about 636 days; one release in the last 12 months shows it is not abandoned, but cadence is slow.

Repo bus factorcaution

All three-month commit activity came from one contributor. Organization ownership provides some handoff capacity, but no second recently active contributor is shown.

Repo commit activitycaution

Only one commit was recorded in the last three months, so recent activity is limited even though it aligns with the latest release.

Repo toolingcaution

Composer is used for builds, but no security-scanning tool is configured, leaving a modest transparency and maintenance gap.

Security policycaution

The repository has no security policy, making vulnerability reporting and response expectations less clear for users.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Jonathan van 't Ende

Direct Dependencies

DependencyLast ReleaseScore
guzzlehttp/guzzle
Version ^6.0 || ^7.0 || ^8.0

Weekly Downloads

Info

Last Published
1 month ago
Created
5 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform