Package Health

ycloudyusa/yusaopeny_activity_finder

This is a mature, actively maintained, stable package with a strong release history: it has existed for over 5 years, has 83 releases, and published 10 releases in the last 12 months. The linked repository is active, not archived, organization-backed, and shows 40 commits from three maintainers in the last 3 months, with a second contributor carrying substantial activity. The package is licensed, well documented, structured as a substantial Composer/Drupal project, has no install-time lifecycle scripts, and is not deprecated. The main concerns are the absence of repository security scanning and a security policy, no packaged or repository tests, and low public popularity, but these are transparency and assurance gaps rather than evidence of abandonment; the recent release and commit activity materially compensate for them.

Latest 7.0.0PackagistPackagist

88%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

100

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

83

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

90

Health Score Breakdown

Package scaffoldingcaution

A substantial README and changelog are present, but neither the artifact nor repository contains tests. For a complex Drupal module, the absence of tests is a genuine assurance gap, though the documentation and changelog provide useful transparency.

Repo popularitycaution

The repository has only 1 star and 18 forks, indicating limited public visibility. Popularity is supporting evidence rather than a verdict, and the strong recent activity compensates for this weakness.

Repo toolingcaution

Composer build tooling is present, but no security-scanning tools are configured. The build setup is appropriate for the package, while the missing security automation is a modest assurance gap.

Security policycaution

The repository has no SECURITY.md or other detected security policy, reducing transparency for vulnerability reporting and maintenance practices.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

DependencyLast ReleaseScore
open-y-subprojects/openy_custom
Version ^3.2.0

Weekly Downloads

Info

Last Published
17 days ago
Created
5 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform