Package Health

werkbot/werkbot-spam-protection

The repository is active, licensed, and has release notes. There is no security policy, and its small audience offers little independent evidence of resilience.

Latest 3.0.1PackagistPackagist

76%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

83

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

93

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Health checks

Repo bus factorcaution

One contributor made all two commits in the last three months, creating concentration risk. Organization ownership provides some handoff capacity, but no second recently active contributor is shown.

Repo toolingcaution

Composer build tooling is present, but no security scanning tool was detected. That is a maintenance and oversight gap rather than evidence that the release is unsafe.

Security policycaution

The repository has no security policy. For a package handling spam-protection functionality, this weakens the documented process for reporting and handling vulnerabilities.

Workflow auditcaution

All 17 analyzed action references are unpinned, which weakens build reproducibility. The audit found no untrusted checkouts, script injection, dangerous triggers, or other reported findings, limiting this to a hygiene concern.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

DependencyLast ReleaseScore
silverstripe/cms
Version ^5
silverstripe/framework
Version ^5
silverstripe/spamprotection
Version ^4

Weekly Downloads

Info

Last Published
3 months ago
Created
4 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform