Package Health

renolit/reint-file-timestamp

It has a clear README, an exact-version GitHub release, a recent repository push, and no deprecation or archive status. The single maintainer, small user base, absent security scanning, and weak workflow pinning leave meaningful maintenance and build-integrity caveats.

Latest 5.0.0PackagistPackagist

72%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

88

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

67

Health Score Breakdown

Maintainerscaution

Only one registry account has publish access, leaving little publishing redundancy and increasing dependence on a single person, although this does not by itself show project abandonment.

Project backingcaution

The registry namespace is organizational, but the linked repository is owned by an individual user, so the data does not show strong organizational backing for ongoing maintenance.

Repo commit activitycaution

There were no commits and no active maintainers in the last 3 months. The recent release and repository push partly offset this, but the short-term activity remains thin.

Repo popularitycaution

The repository has 3 stars, 3 forks, and 1 watcher. Low popularity is only supporting evidence, but it suggests a small external user and contributor base.

Repo toolingcaution

Composer is used for the build, but no security scanning tools are present. The missing scanning is a hygiene weakness rather than evidence of an unsafe release on its own.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Ephraim Härer

Direct Dependencies

DependencyLast ReleaseScore
typo3/cms-core
Version ^14.3
—
—

Weekly Downloads

Info

Last Published
2 months ago
Created
9 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform