Package Health

warengo/qa

Risky to adopt: the package has had no release or repository activity since April 2020, and it provides no license. Its stable version, organization-backed repository, and compact tooling-focused artifact reduce some uncertainty but do not offset the long abandonment risk.

Latest v2.0.6PackagistPackagist

45%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

71

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

100

Health Score Breakdown

Release historydanger

The package has eight releases, but its latest release was about 6 years ago and it has had no releases in the last 12 months. This strongly raises abandonment risk for a dependency.

Repo commit activitydanger

The repository has had zero commits and zero active maintainers in the last 3 months, consistent with the package's long lack of releases. No newer activity is provided to compensate for this dormancy.

Licensecaution

Neither a declared license nor a license file was found in the package or repository. That creates a meaningful legal and adoption concern.

Package scaffoldingcaution

The artifact has no README, which makes a developer-facing quality-assurance tool harder to understand and integrate; the missing tests and changelog are not concerns because published artifacts commonly omit them, while the exact release is marked as having a GitHub release.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

DependencyLast ReleaseScore
slevomat/coding-standard
Version ~6.3.2
—
—
squizlabs/php_codesniffer
Version ^3.3.1
—
—
php-parallel-lint/php-parallel-lint
Version ^1.2.0
—
—
php-parallel-lint/php-console-highlighter
Version ^0.4.0
—
—

Weekly Downloads

Info

Last Published
6 years ago
Created
6 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform