Package Health

ssnukala/sprinkle-secrets

The package has a clear MIT license, a matching repository, and a readable package artifact. Its single-user project has little visible community support, so pinning this release carries ongoing maintenance risk.

Latest 0.0.3PackagistPackagist

48%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

0

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

71

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Health Score Breakdown

Release historydanger

Only three releases were published, all within about four days, and there have been no releases in roughly 20 months. The short initial burst does not compensate for the prolonged release gap.

Repo commit activitydanger

The repository recorded zero commits and zero active maintainers in the last three months, consistent with the long release gap and leaving maintenance capacity unproven.

Repo popularitycaution

The repository has 0 stars, 0 forks, and 1 watcher. Popularity is only supporting evidence, but these values provide no community signal to offset the inactive maintenance record.

Repo toolingcaution

Composer build tooling is present, but no security-scanning tools were detected. This weakens the project's visible security hygiene, though it does not by itself show unsafe code.

Security policycaution

The repository has no security policy, which is a meaningful transparency gap for a package explicitly handling secrets.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Srinivas Nukala

Direct Dependencies

DependencyLast ReleaseScore
aws/aws-sdk-php
Version ^3.0
—
—
birke/rememberme
Version ^2.0
—
—
nikic/php-parser
Version ^4.2.2
—
—
userfrosting/framework
Version ^5.0
—
—
userfrosting/sprinkle-core
Version ^5.0
—
—

Weekly Downloads

Info

Last Published
1 year ago
Created
1 year ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform