Package Health

ziphp/psr-log-source

The package includes tests, static analysis, and a clear BSD-3-Clause declaration. Its workflows use unpinned actions, adding avoidable build-integrity risk, while the repository remains active in structure but not in recent development.

Latest 5.0.0PackagistPackagist

42%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

83

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

100

Health Score Breakdown

Release historydanger

This is the package's only release, published in November 2023, with no releases in the subsequent 12 months; that leaves little evidence of ongoing maintenance.

Repo commit activitydanger

The repository recorded zero commits and zero active maintainers over the last three months, reinforcing the long release gap and increasing abandonment risk.

Workflow auditcaution

Both workflows were fully analyzed with no dangerous findings, but all 8 action references are unpinned, leaving avoidable exposure to changing upstream action code.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Sam Mousa

Direct Dependencies

DependencyLast ReleaseScore
psr/log
Version ^3
ziphp/ziphp
Version >=5.0.0

Weekly Downloads

Info

Last Published
2 years ago
Created
2 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform