Package Health

waljqiang/qrcode

The clear README and changelog make integration and version intent easier to check. The single maintainer and no commits for about three years leave maintenance capacity uncertain, while the license mismatch needs resolution before adoption.

Latest 1.0PackagistPackagist

54%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

78

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Licensecaution

The artifact contains an LGPL-3.0 license file, so the release is licensed, but the manifest declares MIT; that mismatch requires clarification before use.

Maintainerscaution

Only one registry maintainer is listed, leaving limited visible publishing redundancy. The repository is user-owned rather than organization-backed, so there is no provided evidence of a broader support structure.

Project backingcaution

The package and repository are owned by the same individual account, confirming a consistent source relationship but not providing organizational backing.

Release historycaution

This is the only release, published about three years ago, with no releases in the last 12 months. That provides little evidence of continuing maintenance.

Repo commit activitycaution

There were no commits and no active maintainers in the last three months, consistent with a project that has been dormant since its initial release.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

waljqiang

Direct Dependencies

No direct dependencies.

Weekly Downloads

Info

Last Published
3 years ago
Created
3 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform