Package Health

wpelevator/vendor-isolator

This release is usable but carries meaningful maintenance and maturity risk. It is not deprecated or archived, has a matching repository, a clear MIT declaration, recent publication activity, and organization backing. However, the project has only three releases across nearly two years, just one commit from one contributor in the last three months, no tests or changelog, no security policy or scanning, and very limited repository adoption. The small, focused package and organization ownership reduce some concerns, but the thin validation and contributor activity warrant caution before making it a critical dependency.

Latest 0.1.1PackagistPackagist

64%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

63

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

72

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

90

Health Score Breakdown

Package scaffoldingcaution

A reasonably detailed README explains the Composer plugin's behavior and limitations, but neither the artifact nor repository contains tests or a changelog. For a code-transforming Composer plugin, the absence of tests is a genuine maturity gap.

Release historycaution

Only three releases have been published over 693 days, with one release in the last 12 months and a median interval of about 347 days. This indicates a slow release cadence and limited evidence of sustained maintenance.

Repo bus factorcaution

All recent commits come from one contributor, creating a concentrated bus factor. Organization ownership provides some ability to hand maintenance off, but no second active contributor is shown.

Repo commit activitycaution

Only one commit was recorded in the last three months from one active maintainer. Recent activity exists, but it is too sparse to demonstrate a robust maintenance pace.

Repo issue activitycaution

There were no new or closed issues in the last month and no merged pull requests, with one open pull request. This provides little evidence of an active feedback or review process.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

DependencyLast ReleaseScore
nikic/php-parser
Version ^5.0
—
—

Weekly Downloads

Info

Last Published
14 days ago
Created
1 year ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform