Package Health

phpdot/tracelog

phpdot/tracelog appears usable and reasonably transparent, with an MIT license, a clear package structure, repository-backed tests, no install-time lifecycle scripts, no deprecation, and a recently updated unarchived repository. However, it is a young package only 53 days old with three releases, just three commits in the last three months, and all recent activity concentrated in one contributor. The absence of security scanning and a security policy also leaves hygiene gaps. Organization ownership and the repository's matching name and README reference provide some backing, but the package should be adopted with normal dependency pinning and monitoring rather than treated as mature infrastructure.

Latest v0.3.0PackagistPackagist

72%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

75

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

81

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

83

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Omar Hamdan

Direct Dependencies

DependencyLast ReleaseScore
phpdot/contracts
Version ^0.3

Weekly Downloads

Info

Last Published
7 days ago
Created
2 months ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform