Package Health

themusicdev/contact

The package includes clear usage documentation, release notes, repository tests, and a matching MIT license. Its maintenance record is still unproven, and CI uses four unpinned actions; organization backing helps, but all recent commits come from one contributor.

Latest v1.0.0PackagistPackagist

68%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

67

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

88

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

67

Health Score Breakdown

Release historycaution

This is the first release and the package is only 0 days old, so there is no release history yet to demonstrate sustained maintenance.

Repo bus factorcaution

One contributor made all 7 recent commits, creating concentration risk. The organization-owned repository provides some handoff capacity, but no second active contributor is shown.

Repo commit activitycaution

Seven commits in the last 3 months show active initial development, but the short observation window provides limited evidence of long-term maintenance.

Security policycaution

The repository has no security policy, which is a transparency gap for a package handling contact-form data, though the repository does use Dependabot scanning.

Workflow auditcaution

The sole workflow was fully analyzed with no dangerous triggers or audit findings, but all 4 action references are unpinned, leaving CI exposed to action changes over time.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

TheMusicDev

Direct Dependencies

DependencyLast ReleaseScore
cakephp/cakephp
Version ^5.2
—
—

Weekly Downloads

Info

Last Published
11 hours ago
Created
11 hours ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform