Package Health

wp-php-toolkit/svn

This release appears suitable for dependency use, with strong package transparency: it is licensed, includes a substantial README and tests in both the artifact and repository, has a matching source repository, uses Composer build tooling, and is neither deprecated nor archived. The main reservations are maturity and maintenance depth: the package is only 89 days old, has a non-stable-major version, and repository activity over the last three months consists of one commit from one contributor, although organization ownership and frequent release history provide some compensation. The lack of a security policy and security-scanning tooling is a hygiene gap rather than evidence of abandonment or maliciousness.

Latest v0.10.1PackagistPackagist

76%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

70

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

83

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

90

Health Score Breakdown

Repo bus factorcaution

All recent repository commits come from one contributor, creating a concentrated maintenance dependency. Organization ownership partly compensates because maintenance can potentially be handed off, but no second active contributor is shown.

Repo commit activitycaution

Only one commit was recorded in the last three months from one active maintainer, indicating limited observed development activity despite the recent push and frequent registry releases.

Repo issue activitycaution

There are no open issues or pull requests and no issue or pull-request activity in the last month; this is neutral for a small young project, but it provides little evidence of an active user or review community.

Repo popularitycaution

The repository has zero stars, forks, and watchers. Popularity is supporting evidence rather than a verdict, but these counters provide no external adoption signal for this young package.

Repo toolingcaution

Composer is used as a build tool, which supports reproducible project structure, but no security-scanning tool is configured, leaving a security-hygiene gap.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Adam Zielinski
WordPress Team

Direct Dependencies

DependencyLast ReleaseScore
wp-php-toolkit/xml
Version ^0.10.1
—
—
wp-php-toolkit/bytestream
Version ^0.10.1
—
—
wp-php-toolkit/filesystem
Version ^0.10.1
—
—
wp-php-toolkit/http-client
Version ^0.10.1
—
—

Weekly Downloads

Info

Last Published
21 days ago
Created
3 months ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform