Package Health

phpstreamserver/metrics

This release appears usable but carries meaningful maintenance and transparency risk. It has a healthy release cadence over 642 days, was updated very recently, is not deprecated or archived, has an organization-owned repository, and uses a clear MIT declaration. However, the repository shows only one active contributor responsible for all 10 commits in the last 3 months, has no tests or changelog, has no security policy or security scanning, and its sole workflow uses pull_request_target without declared top-level permissions. The package is still pre-1.0 and has no observed popularity or issue/PR activity, so developers should depend on it only if they can tolerate a small-maintainer project and independently validate releases.

Latest v0.10.0PackagistPackagist

68%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

60

Dependencies
Dependencies
Evaluates the health and security of package dependencies

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

78

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

63

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Anton Zenkov

Direct Dependencies

DependencyLast ReleaseScore
psr/log
Version ^3.0
amphp/amp
Version ^3.0
amphp/http-server
Version ^3.3
revolt/event-loop
Version ^1.0
phpstreamserver/core
Version ^0.10

Weekly Downloads

Info

Last Published
3 days ago
Created
1 year ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform