Package Health

raigu/company-registry-code-validation

The package has a clear README, tests, MIT licensing, and no install-time scripts. Its small maintainer base, absent security scanning, and unpinned workflow actions add modest maintenance and build-hygiene concerns.

Latest v2.5.0PackagistPackagist

78%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

67

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

94

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

100

Health Score Breakdown

Maintainerscaution

Only one registry publishing account is listed, leaving a thin publishing base and increasing dependence on a single maintainer.

Repo commit activitycaution

There were no commits or active maintainers in the last three months. The recent release and matching repository push partly compensate, but ongoing development activity is currently limited.

Repo toolingcaution

Composer is used for the build, but no security scanning tool is configured. For a small validation library this is a modest transparency and maintenance gap, not evidence of unsafe behavior.

Workflow auditcaution

The sole workflow was fully analyzed with no dangerous triggers, untrusted checkouts, script injection, or audit findings. However, both action references are unpinned, leaving avoidable build-integrity risk.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Rait Kapp

Direct Dependencies

No direct dependencies.

Weekly Downloads

Info

Last Published
7 months ago
Created
7 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform