Package Health

runapi-ai/pixverse

The package is clearly documented, tested, licensed, and published with release notes. Its short history, single recent contributor, and absent security policy leave maintenance and security practices less proven.

Latest v0.2.0PackagistPackagist

67%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

67

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

81

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

88

Health Score Breakdown

Release historycaution

The package is only 56 days old and has two releases, with a median interval of about 57 days. This is too little history to establish mature release practices, though a release arrived recently.

Repo bus factorcaution

One contributor made 100% of the three-month commits, creating a concentrated maintenance dependency. Organization ownership provides some handoff capacity but does not demonstrate a second active contributor.

Repo commit activitycaution

Only one commit was recorded in the last three months from one active maintainer. The recent push is positive, but the very thin activity makes ongoing maintenance less proven.

Repo toolingcaution

Composer build tooling is present, but no security scanning tools were detected. The package has ordinary build support while repository security checks remain less visible.

Security policycaution

The repository has no security policy, so users are given no documented security reporting or response process. This is a transparency gap rather than evidence of malicious behavior.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

RunAPI

Direct Dependencies

DependencyLast ReleaseScore
runapi-ai/core
Version ^0.9.0
—
—

Weekly Downloads

Info

Last Published
5 days ago
Created
2 months ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform