Package Health

yoage/yii2-easy-wechat4

The MIT license and matching repository make the package transparent to inspect. Its small scope and lack of security tooling provide limited evidence of ongoing quality, so adoption carries substantial maintenance risk.

Latest 0.0.7PackagistPackagist

38%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

0

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

69

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

67

Health Score Breakdown

Release historydanger

The latest release was published in October 2018, and there were no releases in the following 12 months of observed history. Nearly eight years without a release is strong evidence of abandonment risk.

Repo commit activitydanger

The repository recorded zero commits and zero active maintainers in the last three months. This confirms that the long release gap reflects absent current development rather than merely a slower release cadence.

Package file treecaution

The artifact and repository each contain only six files, including two source files, a manifest, documentation, and a license. This may reflect a small wrapper, but it leaves little visible project surface for assessing maturity.

Package scaffoldingcaution

A README is present, which supports basic consumer orientation, but the package has no tests or changelog. The absent tests reduce evidence of compatibility, while the absent changelog is less significant for a small package.

Repo popularitycaution

The repository has zero stars and forks and only one watcher, providing little community evidence to compensate for the lack of maintenance activity.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Andy Wong

Direct Dependencies

DependencyLast ReleaseScore
yiisoft/yii2
Version ~2.0.13
overtrue/wechat
Version ~4.0

Weekly Downloads

Info

Last Published
8 years ago
Created
8 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform