Package Health

ptx/lumen-horizon

The repository is very small, has only one registry maintainer, and lacks a security policy, although it includes a license, tests, and a changelog. If you must use it, pin v3.1.4 and verify compatibility with your Laravel and PHP versions.

Latest v3.1.4PackagistPackagist

38%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

25

Dependencies
Dependencies
Evaluates the health and security of package dependencies

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

67

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Release historydanger

The package has had no release in over 7 years, despite 46 historical releases. This strongly indicates abandonment and outweighs its earlier release activity.

Repo commit activitydanger

The repository recorded zero commits and zero active maintainers in the last 3 months, consistent with more than 7 years without observed maintenance.

Dependency profilecaution

Thirteen runtime dependencies, including framework, queue, Redis, and process components, create a meaningful compatibility surface for a package that has not been updated for years.

Maintainerscaution

Only one registry account has publish access. This is a thin publishing base, and no organization backing is shown to compensate for it.

Repo package mentioncaution

The repository name matches the package, but its README does not mention the package name. That mismatch raises some concern that the source relationship is not clearly documented.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Taylor Otwell

Direct Dependencies

DependencyLast ReleaseScore
ramsey/uuid
Version ^3.5
—
—
predis/predis
Version ^1.1
—
—
symfony/debug
Version ^4.2
—
—
cakephp/chronos
Version ^1.0
—
—
symfony/process
Version ^4.2
—
—

Weekly Downloads

Info

Last Published
7 years ago
Created
9 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform