Package Health

wpjscc/reactphp-http-proxy

The project has a very small footprint and no security policy or scanning. Its stable version and clean install metadata do not offset the long maintenance gap.

Latest v1.0.3PackagistPackagist

42%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

0

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

72

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

67

Health Score Breakdown

Release historydanger

The package has made four releases since May 2023, but none in the last 12 months and the latest release was over three years ago. The short earlier release interval does not compensate for the prolonged inactivity.

Repo commit activitydanger

The repository recorded no commits and no active maintainers in the last three months, consistent with the latest push being over three years ago. This is a strong abandonment concern for a package developers may need maintained dependencies from.

Licensecaution

Neither the package metadata nor the repository contains a license. That creates a real adoption and redistribution risk, even though the package is small.

Package file treecaution

The package and repository each contain only four files: a README, app.php, composer.json, and .gitignore. This may fit a minimal example project, but it provides little evidence of mature library engineering.

Repo popularitycaution

The repository has two stars, no forks, and one watcher. Popularity is not required for a healthy small package, but these very low adoption signals provide little supporting evidence of ongoing use.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

DependencyLast ReleaseScore
react/http
Version ^1.9
clue/socks-react
Version ^1.4
clue/http-proxy-react
Version ^1.8

Weekly Downloads

Info

Last Published
3 years ago
Created
3 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform