Package Health

vinatis/typescript-generator

The package has a clear README, a stable major release, and no install-time scripts. Its license declaration conflicts with the license identified in the artifact, and its source project lacks security tooling.

Latest v2.0.5PackagistPackagist

20%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

67

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

75

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Using this package? Scan for Free

Health Score Breakdown

Repository archiveddanger

The linked repository is archived, making future fixes and maintenance unlikely even though it was pushed recently. Organization backing does not offset the repository's explicit archived status.

Licensecaution

The package declares EUPL-1.1, while the artifact license file was detected as EPL-1.0. Both the artifact and repository contain license files, so this is a license consistency concern rather than an absent-license gap.

Repo bus factorcaution

All recent commit activity comes from one contributor. The organization-owned project provides some handoff capacity, but no second active contributor is evidenced.

Repo commit activitycaution

Only 1 commit was recorded in the last 3 months, from 1 active maintainer, which indicates very limited recent maintenance.

Repo toolingcaution

Composer is used for builds, but no security scanning tools were detected. The missing scanning is a modest maintenance and transparency gap.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Irontec
Daniel Rendon
Vinatis Informatique

Direct Dependencies

DependencyLast ReleaseScore
phlak/semver
Version ^3.0.1
—
—
symfony/config
Version ^7.0
—
—
symfony/finder
Version ^7.0
—
—
symfony/console
Version ^7.0
—
—
symfony/filesystem
Version ^7.0
—
—

Weekly Downloads

Info

Last Published
1 month ago
Created
6 months ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform