Package Health

yatmo/yatmo-php

It has an MIT license, tests, and a matching organization-backed repository. The missing security policy and unpinned CI actions leave maintenance and build integrity less transparent.

Latest v1.1.0PackagistPackagist

72%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

75

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

88

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

67

Health Score Breakdown

Release historycaution

The package is newly published, with three releases all arriving within the same day. This shows active initial publishing but provides little evidence of longer-term maintenance.

Repo commit activitycaution

There were no commits or active maintainers in the measured three-month period. Because the repository is newly created, this is partly expected but still leaves long-term maintenance unproven.

Repo toolingcaution

Composer build tooling is present, but no security scanning tools were detected, leaving a modest repository hygiene gap.

Security policycaution

The repository has no security policy, making vulnerability-reporting expectations and response procedures less transparent.

Workflow auditcaution

The single workflow was fully analyzed with no dangerous triggers or audit findings, but both action references are unpinned. That creates avoidable build-integrity risk without evidence of an exposed write-capable token.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Yatmo

Direct Dependencies

No direct dependencies.

Weekly Downloads

Info

Last Published
11 hours ago
Created
12 hours ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform