Package Health

pessek/hypeembed

The README and two runtime dependencies make the plugin straightforward to integrate. Its source is clearly tied to the package, but the long period without maintenance and proprietary licensing create substantial adoption risk.

Latest v3.1.2PackagistPackagist

38%

Total Score

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

50

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Health Score Breakdown

Release historydanger

The package has only one release, published about five years ago, with no releases in the last 12 months. This is strong evidence of abandonment risk for a dependency that may need compatibility or security updates.

Licensecaution

The manifest declares a proprietary license, but no license file was detected in the package or repository. This creates a material transparency and redistribution concern for an open-source dependency.

Repo popularitycaution

The repository has zero stars and forks and only one watcher. Popularity is supporting evidence rather than a verdict, but these counters provide no meaningful community-maintenance signal.

Repo toolingcaution

Composer is used as the build tool, but no security scanning tooling is present. This is a modest supply-chain hygiene gap rather than evidence that the package is unmaintained by itself.

Security policycaution

The repository has no security policy. That reduces transparency around vulnerability reporting, although the absence alone is not proof of a security problem.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Hermand PESSEK

Direct Dependencies

DependencyLast ReleaseScore
composer/installers
Version ~1.0

Weekly Downloads

Info

Last Published
5 years ago
Created
5 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform