Package Health

siriussupreme/sirius-pipeline

The package is small and clearly linked to its repository, with an MIT license and a stable release. Its maintenance, testing, and security evidence are too weak for a dependable library dependency.

Latest 1.0.0PackagistPackagist

42%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

75

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Health Score Breakdown

Release historydanger

Only one release exists, published nearly nine years ago, with no releases in the last 12 months. That is strong evidence of abandonment for a library dependency.

Repo commit activitydanger

The repository recorded zero commits and zero active maintainers in the last three months, consistent with the long release gap and leaving no current maintenance evidence.

Lifecycle scriptscaution

The package declares eight install- and update-time Composer lifecycle scripts, increasing installation complexity and the amount of code executed during dependency operations.

Package scaffoldingcaution

The release has a README and GitHub release notes, but the README is only 17 characters and neither the package nor repository contains tests. The release notes provide limited documentation but do not offset the maintenance concern.

Repo popularitycaution

The repository has zero stars, forks, and watchers, providing no supporting evidence of adoption or community oversight. Popularity is only supporting evidence, so this reinforces rather than determines the risk.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

siriusSupreme

Direct Dependencies

DependencyLast ReleaseScore
siriussupreme/sirius-container
Version ^1.0
—
—

Weekly Downloads

Info

Last Published
8 years ago
Created
8 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform