Package Health

yunmyo/elasticquent

It includes a substantial README, tests, a matching repository, and MIT licensing. The single-maintainer, low-activity project should be treated as unmaintained; adopting it leaves you responsible for compatibility fixes.

Latest v1.0.6PackagistPackagist

38%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

25

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

75

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Release historydanger

The package has had no release in more than eight years: all seven releases, including v1.0.6, were published on February 26, 2018. This is strong evidence of abandonment for a framework integration package.

Repo commit activitydanger

The repository recorded zero commits and zero active maintainers in the last three months, with its last push on February 26, 2018. The repository is not archived, but that does not offset the prolonged inactivity.

Maintainerscaution

Only one account has registry publish access. That is a limited publishing base, and the absence of recent repository activity provides no evidence of an active backup maintainer.

Repo popularitycaution

The repository has one star and no forks, providing little evidence of a broad user or contributor community that could help sustain the package.

Repo toolingcaution

Composer is used as the build tool, which fits the package ecosystem, but no security scanning tools are configured. This is a minor hygiene gap rather than a primary adoption blocker.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Adam Fairholm

Direct Dependencies

DependencyLast ReleaseScore
nesbot/carbon
Version ~1.0
—
—
illuminate/config
Version ~4.2|^5
—
—
illuminate/database
Version ~4.2|^5
—
—
elasticsearch/elasticsearch
Version >1.0 <2.1
—
—

Weekly Downloads

Info

Last Published
10 years ago
Created
11 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform