Package Health

whsuite/addon-logicboxes

The license file and package-to-repository match improve traceability, but the project offers little safety tooling or written guidance. Its organization ownership is a modest positive, not evidence of ongoing maintenance.

Latest 1.1.0PackagistPackagist

38%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

50

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Health Score Breakdown

Release historydanger

The package has only one release, published about 10 years ago, with no releases in the last 12 months. That strongly suggests the dependency is no longer actively maintained.

Repo commit activitydanger

The repository recorded zero commits and zero active maintainers in the last 3 months, providing no evidence of current maintenance capacity.

Licensecaution

The artifact includes an MIT license file, but the manifest declares the package as Private. This mismatch creates avoidable licensing uncertainty despite the detected license text.

Package scaffoldingcaution

A README is present, but it is only 44 characters and provides almost no integration guidance. The absence of tests and a changelog is normal for a published package artifact and is not counted against it.

Repository archivedcaution

The repository is not marked archived, which avoids the strongest abandonment signal, but its last push was about 10 years ago and does not offset the stale release and commit history.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

WHSuite

Direct Dependencies

No direct dependencies.

Weekly Downloads

Info

Last Published
9 years ago
Created
9 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform