Package Health

tieupmedia/hwt_memorylist

The package includes useful documentation, a changelog, a matching repository reference, and no install-time scripts. Its beta status, tiny user base, absent security policy, and minimal release history leave substantial maintenance risk.

Latest 0.2.0-betaPackagistPackagist

38%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

69

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

83

Health Score Breakdown

Release historydanger

Only two releases were published, both around six years ago, with no release in the last 12 months. This strongly suggests the package is no longer actively maintained.

Project backingcaution

The registry namespace and repository owner match, and the repository is owned by a user account rather than an organization. This offers limited backing evidence but does not imply the project is unaffiliated.

Repo popularitycaution

The repository has only 1 star, 0 forks, and 1 watcher, providing little evidence of broad community review or adoption. Popularity is supporting evidence, so this is a modest concern rather than a verdict alone.

Repo toolingcaution

Composer is used for builds, but no security scanning tools are reported. For a small package this is a hygiene gap, though it is less significant than the lack of recent releases.

Security policycaution

No repository security policy is present. This reduces transparency about vulnerability reporting and handling, adding a maintenance concern.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

tie-up media

Direct Dependencies

DependencyLast ReleaseScore
typo3/cms-core
Version >=9.5.0 <=9.5.99||>=10.0.0 <10.3.0
—
—

Weekly Downloads

Info

Last Published
6 years ago
Created
6 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform