Package Health

thesis/pgmq

The package is clearly documented, licensed, released regularly, and backed by an organization with repository tests. Its small public footprint and limited security process leave less evidence of long-term resilience.

Latest 0.1.7PackagistPackagist

62%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

67

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

86

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

67

Health Score Breakdown

Repo commit activitycaution

The repository recorded zero commits and zero active maintainers during the last three months, a meaningful sign that maintenance may have slowed despite the recent release history.

Repo issue activitycaution

Only one issue is open, with no new or closed issues or pull requests in the last month. This is limited activity but not enough alone to establish abandonment.

Repo toolingcaution

The repository uses Composer and Make, but no security scanning tools were detected. That weakens automated security assurance without proving a supply-chain problem.

Security policycaution

No security policy was found in the repository, leaving vulnerability-reporting expectations and response procedures unclear.

Version stabilitycaution

Version 0.1.7 is not a stable major release, so its API may still change; however, it is not marked prerelease and recent releases are consistently non-prerelease.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Valentin Udaltsov
kafkiansky
Thesis Team

Direct Dependencies

DependencyLast ReleaseScore
amphp/amp
Version ^3.1
—
—
amphp/pipeline
Version ^1.2
—
—
amphp/postgres
Version ^2.1
—
—
thesis/time-span
Version ^0.2.3
—
—
revolt/event-loop
Version ^1.0.7
—
—

Weekly Downloads

Info

Last Published
5 months ago
Created
10 months ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform