Package Health

sweetchuck/utils

The package includes tests, a README, and a manageable runtime dependency set. Its release history is stale and the repository shows no commits in the last three months, while security tooling and a security policy are absent.

Latest 1.0.0-alpha1PackagistPackagist

62%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

75

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

83

Health Score Breakdown

Project backingcaution

The repository is owned by a user account rather than an organization, so the single registry maintainer does not have organizational backing to compensate for the thin maintainer base.

Release historycaution

The latest release was published about five years and nine months ago, with no releases in the last 12 months. This is a meaningful maintenance concern, although the repository was pushed recently.

Repo commit activitycaution

There were no commits and no active maintainers in the last three months. This weakens the evidence of ongoing maintenance, even though the repository has a recent push timestamp.

Repo issue activitycaution

Two issues and one pull request remain open, with no issues or pull requests opened or merged in the last month. This suggests limited current community activity.

Repo popularitycaution

The repository has one star, no forks, and one watcher. This provides little evidence of broad community validation, but low popularity alone does not make a small package unhealthy.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

DependencyLast ReleaseScore
symfony/filesystem
Version ^4.1 || ^5.0
webmozart/path-util
Version ^2.3

Weekly Downloads

Info

Last Published
5 years ago
Created
6 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform