Package Health

ranetrace/ranetrace-php

Framework-agnostic PHP SDK for Ranetrace: error tracking, logging, event tracking and frontend JavaScript error capture.

Latest v1.0.10PackagistPackagist

72%

Total Score

caution

Active but very young project with highly concentrated commits, no security policy, and two unpinned workflow actions.

Health Score Breakdown

Project backingcaution

The registry namespace and repository owner match, supporting package ownership, but the owner is a user account rather than an organization, so there is limited institutional backing to offset contributor concentration.

Repo bus factorcaution

One contributor made 32 of 35 recent commits, or about 91%, leaving little demonstrated continuity if that contributor stops. The second active contributor partly offsets this but does not remove the concentration risk.

Repo toolingcaution

Composer build tooling is present, but no security scanning tool was detected, leaving a repository hygiene gap for a package that handles application and browser-captured data.

Security policycaution

The repository has no security policy, so there is no documented reporting path for vulnerabilities. This lowers transparency but is not evidence of a vulnerability.

Workflow auditcaution

The single workflow was fully analyzed with no dangerous triggers, untrusted checkouts, script injection, or audit findings. However, both of its two action references are unpinned, which weakens build reproducibility.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Ranetrace

Direct Dependencies

DependencyLast ReleaseScore
psr/log
Version ^3.0
—
—
monolog/monolog
Version ^3.0
—
—

Weekly Downloads

Info

Last Published
1 day ago
Created
1 month ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform