Package Health

se7enxweb/expsite-api

This is a usable but very young package with several positive transparency and safety indicators: it is not deprecated or archived, has a stable v1.0.1 release, includes a README and license file, uses only one runtime dependency, and has recent repository activity. The main concerns are limited maturity—only 2 releases over 38 days—plus a single active contributor responsible for all 5 recent commits, no tests or changelog in either the artifact or repository, and no security-scanning tooling. The package appears consistently backed by its linked repository, so these gaps warrant caution rather than making the dependency unfit, but maintenance continuity remains dependent on one person.

Latest v1.0.1PackagistPackagist

72%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

60

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

78

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

100

Health Score Breakdown

Maintainerscaution

Only one registry account, 7x, has publish access. This is a thin publishing base and increases continuity risk, with no organizational backing shown by the provided project-backing signal.

Package scaffoldingcaution

A substantial README is present, but neither the artifact nor repository contains tests or a changelog. For a library, the lack of visible tests is a genuine maintenance and regression-risk gap, while the README partly compensates for documentation transparency.

Project backingcaution

The linked repository is owned by the individual user se7enxweb, not an organization. This does not invalidate the package, but it provides no organizational succession or maintenance handoff benefit.

Release historycaution

The package is only 38 days old with 2 releases and a median interval of about 25 days. This is too limited a history to demonstrate mature maintenance, though the releases are recent rather than stale.

Repo bus factorcaution

One contributor holds 100% of the 3-month commit activity. With the repository owner identified as an individual rather than an organization, this is a meaningful bus-factor and abandonment concern.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

7x

Direct Dependencies

No direct dependencies.

Weekly Downloads

Info

Last Published
27 days ago
Created
1 month ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform