Package Health

wyrihaximus/react-http-middleware-rewrite

Usable with caveats: the package is licensed, documented, tested in its repository, and not deprecated or archived. However, version 2.0.0 has had no registry release for over six years and the repository shows no commits in the last three months, so maintenance appears limited.

Latest 2.0.0PackagistPackagist

58%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

86

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

63

Health Score Breakdown

Lifecycle scriptscaution

The package declares post-install and post-update Composer lifecycle scripts, which add installation-time behavior that consumers should review. The signal does not show that these scripts are dangerous, so this is a limited caution rather than a severe risk.

Release historycaution

The package has only two releases, with the latest published over six years ago and no releases in the last 12 months. This is a meaningful maintenance concern for a dependency, although the repository remains available and unarchived.

Repo commit activitycaution

The repository recorded zero commits and zero active maintainers in the last three months, indicating little recent development activity. This is partly offset by the repository not being archived and by its existing maintenance tooling.

Repo popularitycaution

The repository has one star, one fork, and one watcher, providing little external evidence of broad adoption. Popularity is supporting evidence only, so this modestly reinforces the maintenance concern rather than deciding it.

Security policycaution

The repository has no security policy, leaving vulnerability-reporting guidance undocumented. This is a transparency gap, but it is not by itself evidence that the package is unfit to use.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Cees-Jan Kiewiet

Direct Dependencies

DependencyLast ReleaseScore
react/http
Version ^1
psr/http-message
Version ^1

Weekly Downloads

Info

Last Published
6 years ago
Created
7 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform