Package Health

technohasnat/randomstring

It is a very small, stable package with one runtime dependency and a matching source repository. The MIT declaration, README, and release notes improve transparency, but there is little evidence of ongoing project capacity.

Latest v1.0.1.1PackagistPackagist

43%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

25

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

78

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

83

Health Score Breakdown

Release historydanger

The package has made no release in the last four years and has only three releases overall, indicating a largely inactive project. Its short release burst in December 2021 does not compensate for the prolonged silence.

Repo commit activitydanger

The repository recorded zero commits and zero active maintainers in the last three months, consistent with the long gap since the last release. This is strong evidence of abandonment risk.

Project backingcaution

The registry namespace and repository owner match a single user account. This is consistent ownership context, but it provides less organizational continuity than project backing from an active organization would.

Repo popularitycaution

The repository has 0 stars and 0 forks, with only 1 watcher. Popularity is supporting evidence rather than decisive, but these figures provide no community signal to offset the inactivity.

Repo toolingcaution

Composer is used for builds, which is appropriate for this PHP package, but no security scanning tooling was detected. The missing scanner is a hygiene gap rather than evidence of unsafe behavior.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

technohasnat

Direct Dependencies

No direct dependencies.

Weekly Downloads

Info

Last Published
4 years ago
Created
4 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform