Package Health

puyu-pe/sipro-internal-api-clone-db

The four-file package is clearly tied to its repository and has a stable 1.0.1 release. Organization backing and the absence of install scripts reduce, but do not remove, the maintenance uncertainty.

Latest 1.0.1PackagistPackagist

58%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

75

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

81

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Release historycaution

This package has existed for 179 days but has only one release, with no demonstrated release cadence. That limits evidence of maturity and ongoing maintenance.

Repo commit activitycaution

The repository recorded 0 commits and 0 active maintainers in the last 3 months, despite the package being 179 days old. This is the strongest abandonment concern in the available evidence.

Repo popularitycaution

The repository has 0 stars, forks, and watchers, so there is little public evidence of adoption or community support. Its internal-looking scope and organization backing make this less significant than it would be for a general-purpose library.

Repo toolingcaution

Composer is used for the build, but no security scanning tool was detected. That is a modest process gap, not evidence that the package is unsafe or abandoned on its own.

Security policycaution

The repository has no security policy, leaving vulnerability-reporting expectations undocumented. This is a minor transparency gap given the package's small, internal-looking scope.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

DependencyLast ReleaseScore
puyu-pe/sipro-internal-api-core
Version ^1.0.1
—
—

Weekly Downloads

Info

Last Published
6 months ago
Created
6 months ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform