Package Health

pop-schema/post-category-mutations

This release appears healthy and suitable to depend on: it has a strong release history since 2021, 33 releases in the last 12 months, a recent push, stable non-prerelease versioning, an active non-archived repository, documented tests, a clear GPL-2.0-or-later license, and organization-owned project backing. The main risks are concentrated maintenance, with all 15 commits in the last 3 months from one contributor, limited repository popularity, no changelog, and no repository security policy or security-scanning tooling. These are meaningful resilience and transparency gaps, but they do not outweigh the evidence of active ongoing maintenance and regular releases.

Latest 19.2.4PackagistPackagist

82%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

83

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

89

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

90

Health Score Breakdown

Repo bus factorcaution

One contributor made all 15 commits in the last 3 months, creating a genuine continuity risk. Organization ownership provides some potential handoff capacity, but no second active contributor is shown.

Repo popularitycaution

The repository has only 1 star, 0 forks, and 1 watcher. This does not establish abandonment for a small specialized package, but it provides little independent evidence of broad adoption or community support.

Repo toolingcaution

Composer build tooling is present, but no security-scanning tools are configured. The missing scanning is a security-hygiene gap, though it is not by itself evidence that the package is unsafe to depend on.

Security policycaution

The repository has no SECURITY.md policy. The README supplies a security contact, which partly compensates for the missing formal policy, but coordinated vulnerability-reporting guidance remains limited.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Leonardo Losoviz

Direct Dependencies

DependencyLast ReleaseScore
pop-cms-schema/post-mutations
Version ^19.2.4
pop-cms-schema/post-categories
Version ^19.2.4
pop-cms-schema/category-mutations
Version ^19.2.4
pop-cms-schema/custompost-category-mutations
Version ^19.2.4

Weekly Downloads

Info

Last Published
14 days ago
Created
5 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform