Package Health

phly/react2psr7

It includes a clear BSD-2-Clause license, useful documentation, repository tests, and no install-time scripts. Use react/http instead, which the registry names as the replacement.

Latest 0.1.1PackagistPackagist

5%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

50

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

88

Using this package? Scan for Free

Health Score Breakdown

Registry deprecationdanger

Packagist marks the entire package as abandoned and names react/http as its replacement. Package-level deprecation makes this release unfit for a new dependency.

Release historydanger

The package has only two releases, both published on April 17, 2016, and no releases in the last 12 months. This is strong evidence of abandonment rather than an active release line.

Repo commit activitydanger

There were zero commits and zero active maintainers in the last three months. Combined with the archived repository and decade-old release history, this indicates no active maintenance capacity.

Repository archiveddanger

The linked repository is archived, which signals that active maintenance has ended even though it was pushed recently. This outweighs the repository's documentation and test coverage.

Repo issue activitycaution

There were no new or closed issues or pull requests in the last month, and no open work remains. In this context, the inactivity is consistent with an archived project rather than healthy stability.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

DependencyLast ReleaseScore
react/http
Version ^0.5@dev
—
—
psr/http-message
Version ^1.0
—
—
zendframework/zend-diactoros
Version ^1.3
—
—
container-interop/container-interop
Version ^1.1
—
—

Weekly Downloads

Info

Last Published
10 years ago
Created
10 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform