Package Health

qs9000/rabbitmq-swoole

Usable with caveats: it is a clearly identified, licensed package with a practical README and no deprecation or install-time scripts. However, it has only one release, no visible security policy or scanning, and no community traction, so long-term maintenance is unproven.

Latest 1.0.0PackagistPackagist

64%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

75

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

78

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

90

Health Score Breakdown

Maintainerscaution

One registry account has publish access. For an individually owned package this is not inherently unsafe, but it creates a narrow publishing base if that maintainer becomes inactive.

Release historycaution

This is a young package with one release, first published 105 days ago and no subsequent release yet. That does not prove abandonment, but it leaves maintenance continuity unestablished.

Repo popularitycaution

The repository has zero stars, forks, and watchers. Popularity is only supporting evidence, but the absence of any adoption signal adds uncertainty for a young package.

Repo toolingcaution

Composer is used as the build tool, which fits the PHP package, but no security scanning tooling is present. This is a transparency and process gap rather than evidence that the package is unsafe.

Repository archivedcaution

The linked repository is not archived, but its last push was on the same day as the only release, so there is not yet evidence of continuing source maintenance.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

qs9000

Direct Dependencies

DependencyLast ReleaseScore
topthink/framework
Version ^6.0|^8.0
—
—
topthink/think-swoole
Version ^4.1
—
—
php-amqplib/php-amqplib
Version ^3.7
—
—

Weekly Downloads

Info

Last Published
3 months ago
Created
3 months ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform