Package Health

saaaaaaaaasha/ubackupparser

The MIT license and small Composer dependency profile make the package straightforward to inspect and integrate. Its short documentation, lack of tests, and absent security policy leave important maintenance and usage questions unanswered.

Latest 1.0.0PackagistPackagist

42%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

0

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

67

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Health Score Breakdown

Release historydanger

This is the package's only release, published more than 10 years ago, with no releases in the last 12 months. The stable 1.0.0 version avoids prerelease risk but does not offset the prolonged lack of updates.

Repo commit activitydanger

The repository recorded zero commits and zero active maintainers in the last 3 months, consistent with the last push occurring in April 2016. This is strong evidence of abandonment risk.

Package scaffoldingcaution

The artifact includes a README and changelog, but the README is only 184 characters and contains placeholder installation and usage text; the repository also has no tests. The changelog is a small positive, but consumer guidance and verification remain weak.

Repo toolingcaution

Composer is used for the build, but no security-scanning tools are configured. This is a modest hygiene gap rather than evidence that the package is unsafe.

Security policycaution

The repository has no security policy, leaving no documented channel or process for reporting vulnerabilities. This is a transparency gap, especially for a parser that processes backup data.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Alexander Morgunov

Direct Dependencies

No direct dependencies.

Weekly Downloads

Info

Last Published
10 years ago
Created
10 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform