Package Health

pantono/pusher

Usable with caveats: the package has nearly two years of history, regular releases, an active unarchived repository, and organization backing. The proprietary license, missing README, and no commits in the last three months reduce transparency and raise maintenance concerns.

Latest 1.0.20PackagistPackagist

65%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

75

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

79

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Health Score Breakdown

Licensecaution

The manifest declares a proprietary license and no license file was found in the package or repository. That limits transparency and may restrict safe adoption for projects expecting open-source licensing.

Package scaffoldingcaution

The package has no README, which is a meaningful documentation gap for a library consumers must integrate, while the absence of tests and a changelog in the published artifact is normal packaging practice. The repository also reports no tests or changelog, leaving less project documentation than ideal.

Repo commit activitycaution

There were no commits and no active maintainers during the last three months, which raises a maintenance concern. However, the repository was pushed today and the registry shows 10 releases in the last year, partially compensating for the quiet commit period.

Repo toolingcaution

The repository uses Composer for builds, showing basic project tooling, but it has no security scanning tools. This is a modest transparency and maintenance gap rather than a severe risk.

Security policycaution

No security policy was found in the repository, leaving vulnerability-reporting expectations unclear. This is a hygiene concern, although the package has no observed dangerous workflows.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Chris Burton

Direct Dependencies

DependencyLast ReleaseScore
pantono/core
Version ^1.0
—
—
pantono/phinx
Version ^0.16
—
—
pantono/contracts
Version ^1.0
—
—
pantono/authentication
Version ^1.0
—
—
pusher/pusher-php-server
Version ^7.2
—
—

Weekly Downloads

Info

Last Published
9 days ago
Created
2 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform