Package Health

pipestream/light-hook-deploy

It is clearly licensed, documented, and the repository matches the package. The deployment-focused design also uses an install-time script, so changes deserve extra scrutiny.

Latest 2.0.1PackagistPackagist

45%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

0

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

80

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Health Score Breakdown

Release historydanger

The package has had no releases in the last 12 months, and its latest release was about two years ago. Six releases arrived early in its history, but that does not offset the prolonged current inactivity.

Repo commit activitydanger

The repository recorded zero commits and zero active maintainers in the last three months, consistent with the long gap since the latest release and raising abandonment risk.

Lifecycle scriptscaution

The package defines a post-create-project-cmd lifecycle script. Install-time execution deserves caution because it can run automatically during project setup, even though this signal alone does not show harmful behavior.

Security policycaution

The repository has no security policy, leaving no documented route for reporting vulnerabilities in a deployment service.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Cristian Blanco
Gabriel Parra

Direct Dependencies

DependencyLast ReleaseScore
slim/slim
Version 4.*
—
—
php-di/php-di
Version ^6.4
—
—
predis/predis
Version ^2.2
—
—
guzzlehttp/psr7
Version ^2
—
—
monolog/monolog
Version ^3.7
—
—

Weekly Downloads

Info

Last Published
1 year ago
Created
2 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform