Package Health

sanatorium/stock

The last release and repository push were nearly ten years ago, with no commits or active maintainers in the past three months. It also lacks licensing and consumer documentation, while the repository does at least remain unarchived and the version is stable.

Latest 3.0.4PackagistPackagist

38%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

0

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

56

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Health Score Breakdown

Release historydanger

The latest release was published nearly ten years ago, and there have been no releases in the last 12 months. This is strong evidence of abandonment risk, though it is not registry deprecation.

Repo commit activitydanger

The repository recorded zero commits and zero active maintainers in the past three months, consistent with a long-abandoned project.

Licensecaution

No license is declared, no license file is present in the package, and no repository license file was found, leaving reuse and redistribution terms unclear.

Package scaffoldingcaution

The package has no README, tests, or changelog, which reduces transparency for a library consumers must integrate; the absent tests and changelog are normal packaging gaps, but the missing README matters.

Repo package mentioncaution

The repository name does not match the package name, and the README mention could not be established. This may reflect a subpackage or monorepo layout, so it is a limited ownership-transparency concern rather than proof of a mismatch.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

rozklad
mattluk
Sanatorium

Direct Dependencies

DependencyLast ReleaseScore
platform/foundation
Version >=2.0 <5.0
—
—
cartalyst/composer-installers
Version 1.2.*
—
—

Weekly Downloads

Info

Last Published
9 years ago
Created
10 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform