Package Health

pronamic/pronamic-cli

Tests, a substantial README, and release notes provide useful consumer documentation. Maintenance is concentrated in one contributor, with no security policy and no license evidence.

Latest v1.1.1PackagistPackagist

12%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

67

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

50

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Using this package? Scan for Free

Health Score Breakdown

Repository archiveddanger

The linked repository is archived, which is a severe abandonment signal even though it was pushed recently; archived projects should not be relied on for future fixes.

Licensecaution

Neither the package nor the linked repository provides a declared license or license file, leaving the legal terms for use unclear.

Release historycaution

The package has only three releases and none in the last 12 months, with the latest registry release on August 1, 2024. This supports the maintenance concern, although the repository shows some recent activity.

Repo bus factorcaution

All recent commits came from one contributor, leaving no demonstrated active backup for maintenance. Organization backing provides some handoff capacity, but no second active contributor is shown.

Repo commit activitycaution

Only one commit was recorded in the last three months, indicating very limited recent development activity. This does not offset the repository's archived state.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Pronamic

Direct Dependencies

DependencyLast ReleaseScore
symfony/console
Version ^5.0 || ^6.0 || ^6.1 || ^6.2
—
—
symfony/process
Version ^5.0 || ^6.0 || ^6.1 || ^6.2
—
—
symfony/filesystem
Version ^5.0 || ^6.0 || ^6.1 || ^6.2
—
—
wp-cli/wp-cli-bundle
Version ^2.6
—
—

Weekly Downloads

Info

Last Published
2 years ago
Created
3 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform