Package Health

wpelevator/update-client

Usable with caveats: it is actively released, backed by an organization, and has a matching source repository. Adoption carries maintenance risk because all recent commits come from one contributor and the small project has no tests, changelog, or security policy.

Latest 0.8.1PackagistPackagist

72%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

75

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

83

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

90

Health Score Breakdown

Package scaffoldingcaution

The package includes a substantial README, but neither the artifact nor repository has tests or a changelog. For a small seven-file library this is a real transparency and maintenance gap, though the README documents usage.

Repo bus factorcaution

One contributor made all 6 commits in the last 3 months, creating a concentrated maintenance risk. Organization ownership provides some ability to hand maintenance off, so this is a caution rather than a severe abandonment signal.

Repo issue activitycaution

There are no new issues or pull requests in the last month, and no pull requests were merged. This gives little evidence of community review or issue handling, although the absence of reported issues is not itself abandonment.

Repo popularitycaution

The repository has zero stars and forks and one watcher, so there is little public adoption evidence. Popularity is supporting evidence rather than a requirement, and the package's active release history is more informative here.

Repo toolingcaution

Composer is used as a build tool, which fits this PHP package, but no security scanning tools are configured. That leaves a modest transparency and assurance gap.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

No direct dependencies.

Weekly Downloads

Info

Last Published
12 days ago
Created
1 year ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform