Package Health

thejoshsmith/craft-title-to-sidebar

The clear MIT license, README, and small runtime dependency set improve transparency and integration. Maintenance evidence is weak: the last registry release was over seven years ago, repository activity stopped nearly six years ago, and three issues remain open without recent resolution.

Latest 1.0.1PackagistPackagist

42%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

78

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

83

Health Score Breakdown

Release historydanger

Only two releases were published, with the latest over seven years ago and no releases in the last 12 months. That long gap is strong evidence of abandonment risk for a plugin dependency.

Maintainerscaution

A single registry maintainer provides limited publishing redundancy. The small package scope makes this less severe, but it still increases continuity risk.

Project backingcaution

The linked repository is owned by an individual rather than an organization, so the single-maintainer continuity concern is not offset by visible organizational backing.

Repo issue activitycaution

Three issues and two pull requests remain open, with no issues or pull requests opened or closed in the last month. Combined with the old last release, this supports a meaningful abandonment concern.

Repo popularitycaution

The repository has zero stars and two forks. Popularity is only supporting evidence, but these low counts provide little external adoption or maintenance confidence.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Josh Smith <me@joshsmith.dev>

Direct Dependencies

DependencyLast ReleaseScore
craftcms/cms
Version ^3.0.0-RC1
—
—

Weekly Downloads

Info

Last Published
7 years ago
Created
7 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform