Package Health

qixinyun/pingxiang-xiangdong-share-config

The repository is not archived, and the artifact is easy to inspect. The single-user project has no security policy and does not mention the package in its README, limiting transparency.

Latest v0.1.0PackagistPackagist

52%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

75

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Release historycaution

The package has had only one release, published about 6 years and 9 months ago, with no releases in the last 12 months. This leaves little evidence of ongoing maintenance.

Repo commit activitycaution

There were no commits or active maintainers in the last 3 months. Combined with the single-release history, this is evidence of a dormant project.

Repo package mentioncaution

The repository name matches the package name, which supports the linkage, but its README does not mention the package. That makes the package's relationship to the repository less transparent.

Repo toolingcaution

The repository uses Composer for building, but no security-scanning tools were detected. For this small configuration package, that is a modest transparency gap rather than a severe risk.

Security policycaution

No security policy was found in the repository. This weakens the project's documented process for reporting and handling issues.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

qixinyun

Direct Dependencies

No direct dependencies.

Weekly Downloads

Info

Last Published
6 years ago
Created
6 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform