Package Health

wiggum/services

This is a usable, licensed, stable package with a long release history, recent release activity, tests, and no deprecation or install-time lifecycle scripts. However, maintenance evidence is mixed: the repository recorded zero commits and zero active maintainers in the last 3 months, has only 2 stars and 1 fork, lacks a security policy and security scanning, and does not clearly match or mention the package, which weakens transparency and raises abandonment or repository-association concerns. It is reasonable to evaluate for adoption, but a developer should verify the repository/package linkage and be prepared to assume additional maintenance risk.

Latest v2.0PackagistPackagist

62%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Dependencies
Dependencies
Evaluates the health and security of package dependencies

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

83

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Dependency profilecaution

Eight runtime dependencies, including framework and storage/image integrations, create a meaningful dependency surface that increases transitive maintenance burden, though the profile is not by itself severe.

Project backingcaution

The repository is owned by an individual user rather than an organization, so there is no visible organizational backing to offset the package's thin community and maintenance signals.

Repo commit activitycaution

The repository has 0 commits and 0 active maintainers in the last 3 months, a significant sign that maintenance may have slowed or stopped; the recent repository push and recent releases provide only partial compensation.

Repo issue activitycaution

There are no new or closed issues in the last month and two open pull requests remain unmerged, indicating limited visible issue-management activity despite some pending contribution activity.

Repo package mentioncaution

The repository name does not match the package name, and its README does not mention the package, so the linkage between the published package and its source repository is not clearly demonstrated.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

DependencyLast ReleaseScore
psr/log
Version 3.*
league/flysystem
Version ^3.0
nikic/fast-route
Version ^1.0
intervention/image
Version ^2.0
league/flysystem-aws-s3-v3
Version ^3.0

Weekly Downloads

Info

Last Published
17 days ago
Created
9 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform