Package Health

splashfrog/leap-starter

This is a usable but still relatively young package with a clear GPL-3.0-or-later license, a substantial 315-file Drupal implementation, stable releases, and a recent repository push. However, maintenance evidence is mixed: the repository recorded no commits or active maintainers in the last 3 months, has no tests or changelog, has no security policy or security-scanning tooling, and is backed by a single individual account with no demonstrated popularity. The latest release and recent push reduce abandonment concerns, but the available evidence supports caution before adopting it as a critical dependency.

Latest 2.0.1PackagistPackagist

58%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

83

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

90

Health Score Breakdown

Maintainerscaution

Only one registry account has publish access. This is a limited publishing base, and the individual ownership context provides less redundancy if that maintainer becomes inactive.

Package scaffoldingcaution

A substantial README and repository-backed GitHub Releases provide useful documentation and release visibility, compensating for the absence of packaged tests and a changelog for this starter/scaffolding package. The lack of tests still limits verification, but it is not severe enough to outweigh the available documentation and release evidence.

Project backingcaution

The repository owner is a User rather than an organization, so the project has no demonstrated organizational backing in the collected evidence. Combined with the single registry maintainer, this increases continuity risk.

Repo commit activitycaution

The repository recorded 0 commits and 0 active maintainers over the last 3 months, indicating a recent collapse in observed development activity. The recent push and release history partially compensate, but this remains the strongest abandonment concern in the collected signals.

Repo issue activitycaution

There are no open issues or pull requests and no issue or pull-request activity in the last month. This may reflect a small or quiet project, but it provides little evidence of community review or maintenance responsiveness.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Splash Frog

Direct Dependencies

DependencyLast ReleaseScore
drupal/core
Version ^11.3
drupal/pathauto
Version ^1.12
drupal/paragraphs
Version ^1.17
drupal/layout_builder_styles
Version ^2.0

Weekly Downloads

Info

Last Published
18 days ago
Created
1 year ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform