Package Health

themusicdev/trailing-slash

The source repository has integration tests, a clear README, and Dependabot enabled. Pin the dependency to v1.0.0 and monitor early maintenance activity before broad adoption.

Latest v1.0.0PackagistPackagist

68%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

83

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

89

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

67

Health Score Breakdown

Release historycaution

This is a newly published package with one release and no established release history. The lack of historical maintenance evidence is a real maturity concern, though it is expected for a first release.

Repo commit activitycaution

There were no commits or active maintainers during the last three months, so there is no demonstrated maintenance cadence. Because the package is brand new, this is a limited caution rather than evidence of a collapsed project.

Repo popularitycaution

The repository has no stars, forks, or watchers. For a package released today this is weak supporting evidence, but it does not independently indicate abandonment.

Security policycaution

The repository has no security policy. This is a transparency gap for reporting vulnerabilities, although it is less significant for this small middleware package than for a security-sensitive component.

Workflow auditcaution

The single workflow was fully analyzed with no untrusted checkout, script injection, or high-severity findings, and it avoids top-level write permissions. However, all four action references are unpinned, leaving the CI supply chain less reproducible.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

TheMusicDev

Direct Dependencies

DependencyLast ReleaseScore
cakephp/cakephp
Version ^5.2
—
—

Weekly Downloads

Info

Last Published
15 hours ago
Created
15 hours ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform