Package Health

wbrowar/adminbar

This release has strong evidence of a real, maintained package: it has a long release history, five releases in the last 12 months, a stable non-prerelease version, a current push, a substantial source tree, a changelog, an MIT license, and no install-time lifecycle scripts. However, Packagist marks this package as abandoned and identifies wbrowar/craft-admin-bar as its replacement, which is a decisive adoption concern even though version 5.8.2 was released recently. Maintenance capacity also appears narrow, with only one commit from one contributor in the last three months, no repository tests, no security scanning, and no security policy. Developers should prefer the replacement package rather than introduce a new dependency on this abandoned package.

Latest 5.8.2PackagistPackagist

45%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

75

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

90

Health Score Breakdown

Registry deprecationdanger

Packagist explicitly marks the package as abandoned and names wbrowar/craft-admin-bar as the replacement. The recent release and active repository reduce abandonment uncertainty, but they do not remove the migration and future-support risk of depending on the deprecated package.

Package scaffoldingcaution

The artifact has a substantial README and changelog, and the repository uses GitHub Releases, which provide useful project transparency. Tests are absent from both the artifact and repository, leaving a maintenance-quality gap for a plugin of this scope.

Project backingcaution

The repository is owned by a GitHub user rather than an organization, so there is no organization-level maintenance handoff to compensate for the narrow contributor base. The owner identity does establish a concrete source owner, however.

Repo bus factorcaution

One contributor made 100% of the one commit in the last three months. With a user-owned repository and no second active contributor shown, maintenance continuity depends heavily on one person.

Repo commit activitycaution

Only one commit was recorded in the last three months, from one active maintainer. That is recent activity, but it indicates a low current maintenance cadence and limited resilience.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Will Browar

Direct Dependencies

DependencyLast ReleaseScore
craftcms/cms
Version ^5.8.0
nystudio107/craft-code-editor
Version ^1.0.18

Weekly Downloads

Info

Last Published
14 days ago
Created
9 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform