Package Health

thorazine/mmntm-php

Its dependency surface is small, and it has no install-time scripts. Pinning this version is risky because maintenance and consumer documentation have both stopped.

Latest 0.0.4PackagistPackagist

38%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

0

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

69

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Release historydanger

The package has had no release in nearly seven years; all five releases were concentrated in a short period in 2019. This is strong evidence of abandonment risk despite the package not being deprecated.

Repo commit activitydanger

The repository recorded zero commits and zero active maintainers in the last three months, consistent with its last push occurring in October 2019. No newer activity compensates for this long maintenance gap.

Package scaffoldingcaution

The artifact has no README, which makes a library harder for consumers to integrate, although the release notes explicitly say “Not production ready.” Missing tests and changelog files are normal for a published artifact and are not counted against it.

Repo popularitycaution

The repository has zero stars and forks and only one watcher, providing no meaningful community support signal. Popularity is supporting evidence rather than a verdict, so this adds only modest concern.

Repo toolingcaution

Composer is used for builds, but no security-scanning tooling is present. This is a modest transparency and maintenance gap, not a severe risk by itself.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Matthijs Openneer

Direct Dependencies

DependencyLast ReleaseScore
guzzlehttp/guzzle
Version ^6.3
—
—

Weekly Downloads

Info

Last Published
6 years ago
Created
7 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform