Package Health

vanvanni/marko-blade

The repository includes tests, release notes, and a clear package match. Workflow actions are unpinned and no security policy is provided, adding maintenance and build-integrity concerns.

Latest v1.0.0-rc7PackagistPackagist

60%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Dependencies
Dependencies
Evaluates the health and security of package dependencies

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

81

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Dependency profilecaution

Seven runtime dependencies, including several framework components and dotenv, create a meaningful compatibility surface for a small integration package, though no specific dependency failure is shown.

Project backingcaution

The package and repository are owned by the same individual account, providing direct ownership alignment but not the resilience of an organization-backed maintainer base.

Release historycaution

Seven releases arrived within about two days, showing an active initial push but little evidence of a sustained release pattern over the package's roughly five-month history.

Repo commit activitycaution

There were no commits and no active maintainers in the last three months, a significant warning for a package only about five months old.

Repo toolingcaution

Composer build tooling is present, but no security scanning tools are configured, leaving supply-chain checks less visible.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

DependencyLast ReleaseScore
marko/view
Version ^0.4
—
—
illuminate/view
Version ^11.0 || ^12.0 || ^13.0
—
—
vlucas/phpdotenv
Version ^5.4.1
—
—
illuminate/events
Version ^11.0 || ^12.0 || ^13.0
—
—
illuminate/container
Version ^11.0 || ^12.0 || ^13.0
—
—

Weekly Downloads

Info

Last Published
5 months ago
Created
5 months ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform