Package Health

yangweijie/think-stempler

Usable with caveats: it has clear licensing, documentation, tests, and a linked repository, but only one release exists and the repository has had no commits or active maintainers in over a year. Its very small user base and lack of a security policy add maintenance risk.

Latest v0.9.0PackagistPackagist

58%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

25

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

69

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

83

Health Score Breakdown

Repo commit activitydanger

There were no commits and no active maintainers in the last three months, consistent with the long gap since the initial release and raising abandonment risk.

Project backingcaution

The registry namespace and repository owner are the same individual account, providing direct ownership continuity, but there is no organization backing to compensate for the single-person maintenance risk.

Release historycaution

The package has only one release, published over a year ago, with no releases in the last 12 months. That leaves limited evidence of sustained maintenance.

Repo popularitycaution

The repository has zero stars and forks and only one watcher. Popularity is not decisive by itself, but this provides no supporting evidence of broad adoption or review.

Repo toolingcaution

Composer build tooling is present, but no security scanning tools were detected. The missing scanning is a transparency gap, though it is not by itself evidence of an unsafe release.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

yangweijie

Direct Dependencies

DependencyLast ReleaseScore
spiral/stempler
Version ^3.15
—
—
topthink/think-view
Version ^2.0.4
—
—

Weekly Downloads

Info

Last Published
1 year ago
Created
1 year ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform