Package Health

sheychen/colis

The MIT license and matching source tree make its contents clear, and it has no install-time scripts. Its short README and absent security policy offer little additional assurance.

Latest 1.1PackagistPackagist

8%

Total Score

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

42

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Using this package? Scan for Free

Health Score Breakdown

Registry deprecationdanger

Packagist marks the entire package as abandoned, with no replacement specified. This is a severe adoption and maintenance warning.

Release historydanger

The package has only 2 releases, both published about 9 years ago, with no releases in the last 12 months. This strongly indicates abandonment.

Repository archiveddanger

The linked repository is archived and was last pushed about 9 years ago, showing that active maintenance has ended.

Package scaffoldingcaution

A README is present, but it is only 47 characters and the package has no tests or changelog. Missing tests and changelog are not inherently problematic for a published artifact, while the minimal documentation provides limited consumer guidance.

Security policycaution

The repository has no security policy, leaving vulnerability-reporting and response expectations undocumented. This is a secondary transparency gap alongside the much stronger abandonment evidence.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

sheychen

Direct Dependencies

DependencyLast ReleaseScore
psr/http-message
Version ^1.0
—
—
sheychen/inutils
Version ^1.0
—
—
http-interop/http-factory
Version ^0.2.0
—
—

Weekly Downloads

Info

Last Published
9 years ago
Created
9 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform