Package Health

orisai/object-mapper

The repository has tests, a changelog, security scanning, and a security policy. Maintenance is thin, with one recent commit and no releases in the last 12 months, while the organization provides some continuity. Workflow references are all unpinned, adding a supply-chain hygiene concern.

Latest 0.3.0PackagistPackagist

68%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

70

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

88

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

100

Health Score Breakdown

Release historycaution

The package has only three releases and none in the last 12 months; the latest release is more than a year old, which lowers confidence in ongoing maintenance.

Repo bus factorcaution

All recent commits came from one contributor, creating concentration risk; organization ownership partly compensates by allowing maintenance handoff.

Repo commit activitycaution

Only one commit was made in the last three months by one active maintainer, showing very light recent maintenance.

Repo issue activitycaution

There are 12 open issues and no issues or pull requests were closed in the last month, suggesting limited current responsiveness.

Version stabilitycaution

Version 0.3.0 is not a stable major release, although it is not marked prerelease and recent releases contain no prerelease share. This is a modest maturity concern rather than a severe risk.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Marek Bartoš

Direct Dependencies

DependencyLast ReleaseScore
nette/utils
Version ^3.1.0|^4.0.0
—
—
orisai/utils
Version ^1.0.0
—
—
orisai/exceptions
Version ^1.0.0
—
—
orisai/source-map
Version ^1.0.0
—
—
nette/robot-loader
Version ^3.4.0|^4.0.0
—
—

Weekly Downloads

Info

Last Published
1 year ago
Created
3 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform