Package Health

pendenga/sftp

Sftp library for doing key-signed posts

Latest 0.1.0PackagistPackagist

42%

Total Score

unhealthy

Risky: no release or commit activity for over five years, and the package has no license.

Health Score Breakdown

Licensedanger

The manifest declares no license, and neither the package nor the linked repository contains a license file. Developers therefore have no clear permission terms for use or redistribution.

Release historydanger

This is the package's only release, published over six years ago, with no releases in the last 12 months. That strongly limits evidence of ongoing maintenance.

Repo commit activitydanger

There were no commits and no active maintainers in the last three months. Combined with the old last push, this is strong evidence that maintenance has stopped.

Maintainerscaution

Only one registry account has publish access. With user-owned project backing and no recent activity, this leaves little visible maintainer redundancy.

Repo popularitycaution

The repository has zero stars and forks and only one watcher. Low popularity is supporting evidence rather than a verdict, but it provides little external validation or community support.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Grant Anderson

Direct Dependencies

DependencyLast ReleaseScore
pendenga/file
Version ^0.1.0
—
—
phpseclib/phpseclib
Version ^2.0
—
—

Weekly Downloads

Info

Last Published
6 years ago
Created
6 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform