Package Health

satooshi/file-client

The package has a clear MIT license, useful documentation, tests, and no install-time scripts. However, it has had only one release, with no new release since February 2013, and the repository was last pushed in March 2013; adoption carries substantial abandonment risk.

Latest 0.1.0PackagistPackagist

42%

Total Score

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

67

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Release historydanger

This is the only release, published in February 2013, with no releases in the last 12 months; that long-standing lack of releases materially raises abandonment risk.

Repo toolingcaution

Composer and Phing build tooling are present, showing basic project structure, although no security scanning tools are configured.

Repository archivedcaution

The repository is not archived, which is a modest positive, but its last push was in March 2013 and does not offset the very old release history.

Security policycaution

The repository has no security policy. This is a transparency gap, though it is less significant than the package's prolonged inactivity.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Kitamura Satoshi

Direct Dependencies

DependencyLast ReleaseScore
satooshi/ltsv-encoder
Version dev-master
—
—

Weekly Downloads

Info

Last Published
13 years ago
Created
13 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform