Package Health

tinymvc/orbit

The MIT license, tests, and substantial README improve transparency. Install-time scripts and no repository security tooling add modest operational risk.

Latest v2.0.2PackagistPackagist

68%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

83

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

94

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Health Score Breakdown

Lifecycle scriptscaution

The package runs post-create-project-cmd and post-root-package-install scripts, which increase install-time execution and operational risk compared with a package without lifecycle hooks.

Repo bus factorcaution

All four recent commits came from one contributor, giving the project a high concentration risk and making continuity dependent on a single active maintainer.

Repo toolingcaution

Composer is used as a build tool, but no security-scanning tools were detected. The missing scanning layer is a modest transparency and maintenance-control gap.

Security policycaution

The repository has no SECURITY.md or other security policy, leaving vulnerability reporting and response expectations undocumented.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Shahin Moyshan

Direct Dependencies

DependencyLast ReleaseScore
tinymvc/tinycore
Version ^3.3
—
—
phpmailer/phpmailer
Version ^7.0
—
—
tinymvc/inertia-php
Version ^2.0
—
—
voku/portable-ascii
Version ^2.0
—
—

Weekly Downloads

Info

Last Published
12 hours ago
Created
7 months ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform