Package Health

protung/open-api-generator

The project has a clear README, repository tests, and an MIT license. Its workflow is audited, though it lacks security tooling and pins none of its four referenced tools or actions.

Latest v1.0.0PackagistPackagist

61%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

67

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

93

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Health Score Breakdown

Release historycaution

This release was published today and is the package's only release, so there is no demonstrated maintenance or compatibility history yet.

Repo bus factorcaution

All eight recent commits came from one contributor, leaving maintenance dependent on a single active developer. Organization ownership provides some handoff capacity but does not remove the concentration risk.

Repo commit activitycaution

The repository has eight commits in the last three months, showing current activity, but only one active maintainer contributed during that period.

Security policycaution

The repository has no security policy, reducing transparency about how vulnerabilities should be reported and handled.

Workflow auditcaution

The single workflow was fully analyzed with no untrusted checkout or script-injection findings, but all four references are unpinned and the high-confidence unpinned-tools finding weakens build reproducibility.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Dragos Protung
Cezary Stepkowski

Direct Dependencies

DependencyLast ReleaseScore
symfony/form
Version ^6.4 || ^7.4 || ^8.0
—
—
symfony/routing
Version ^6.4 || ^7.4 || ^8.0
—
—
myclabs/deep-copy
Version ^1.10
—
—
symfony/validator
Version ^6.4 || ^7.4 || ^8.0
—
—
phpstan/phpdoc-parser
Version ^2.0.0
—
—

Weekly Downloads

Info

Last Published
7 hours ago
Created
7 hours ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform