Package Health

tenseg/cascading-entry-protection

This is a young but reasonably well-structured package with an MIT license, tests in both the artifact and repository, a matching source repository, minimal runtime dependencies, and recent activity from two contributors under an organization-owned project. Its main risks are limited maturity—only 3 days old with two releases at pre-1.0 version v0.1.2—and the absence of a security policy; popularity is also unestablished. The available evidence supports cautious adoption rather than treating the package as mature and broadly proven.

Latest v0.1.2PackagistPackagist

78%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

90

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

81

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

90

Health Score Breakdown

Release historycaution

The package is only 3 days old and has two releases, so maintenance history and long-term stability are not yet demonstrated.

Repo commit activitycaution

There were two commits in the last 3 months from two active maintainers, demonstrating recent activity but still offering only a small maintenance history.

Repo toolingcaution

Composer build tooling is present, but no security scanning tools were detected; the missing scanning is a transparency and assurance gap rather than evidence of a severe defect.

Security policycaution

The repository has no SECURITY.md or other detected security policy, leaving vulnerability-reporting expectations unclear.

Version stabilitycaution

Version v0.1.2 is not a stable major release, which signals an immature API and greater compatibility risk for dependents.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Tenseg LLC

Direct Dependencies

DependencyLast ReleaseScore
statamic/cms
Version ^6.0
—
—

Weekly Downloads

Info

Last Published
16 days ago
Created
19 days ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform