Package Health

phpnomad/opis-json-schema-integration

The package is clearly documented, licensed, and backed by an organization with repository tests and dependency scanning. Its short history and lack of commits or merged pull requests for about three months leave maintenance capacity less proven, while workflow actions are not pinned.

Latest 1.0.3PackagistPackagist

67%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

67

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

94

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Release historycaution

This is a young package, about five months old, with four releases concentrated in a short period; that provides limited evidence of long-term maintenance.

Repo commit activitycaution

The repository recorded zero commits and zero active maintainers over the last three months, leaving current maintenance activity unproven for this young package.

Repo issue activitycaution

There are two open pull requests but no issues or pull requests were merged in the last month, which is a modest sign of unresolved maintenance work.

Security policycaution

No repository security policy was found, which weakens the project's published process for reporting and handling vulnerabilities.

Workflow auditcaution

Both workflows were fully analyzed with no dangerous sinks or audit findings, but all four action references are unpinned, leaving them exposed to upstream tag changes.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Alex Standiford

Direct Dependencies

DependencyLast ReleaseScore
opis/json-schema
Version ^2.3
phpnomad/json-schema
Version ^1.0

Weekly Downloads

Info

Last Published
3 months ago
Created
5 months ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform