Package Health

turkeryildirim/rule-engine

The project is newly published, so its longer-term maintenance record is unproven. One maintainer, no repository security policy, and four unpinned workflow actions add modest risk, while tests, release notes, licensing, and readme documentation are present.

Latest v1.0.0PackagistPackagist

64%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

88

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

67

Health Score Breakdown

Maintainerscaution

Only one registry account has publish access. The linked repository is user-owned, so there is no organizational backing shown to compensate for the narrow maintainer base.

Project backingcaution

The registry namespace and repository are owned by the same individual, confirming source ownership but not providing broader organizational backing.

Release historycaution

This is the first release and was published today, so there is no established release cadence or track record yet. That is a maturity concern, though it is expected for a new project rather than evidence of abandonment.

Repo commit activitycaution

No commits or active maintainers were recorded in the preceding three months, but the repository was created and released today, making this a limited history rather than clear abandonment.

Repo toolingcaution

Composer build tooling is present, but no security scanning tools were detected. For a newly published rules engine, this leaves a useful but incomplete verification and security-maintenance picture.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Türker YILDIRIM

Direct Dependencies

DependencyLast ReleaseScore
symfony/polyfill-intl-normalizer
Version ^1.42
—
—

Weekly Downloads

Info

Last Published
21 hours ago
Created
21 hours ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform