Package Health

zouloux/nano

The MIT license, stable versioning, frequent releases, and modest dependency set make adoption straightforward. Maintenance depth is limited by one recent contributor, no repository tests, and no security policy.

Latest 2.11.5PackagistPackagist

67%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

88

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Health Score Breakdown

Package scaffoldingcaution

The repository has a README, but it reports no tests and no changelog; those omissions reduce project transparency and confidence in regression coverage, while the missing artifact README is not itself concerning for this source-oriented package.

Project backingcaution

The repository is owned by an individual account rather than an organization, so the single-maintainer and single-contributor findings represent a genuine continuity risk.

Repo bus factorcaution

One contributor made all commits in the last 3 months, so the project has a concentrated maintenance burden with no demonstrated backup contributor.

Repo commit activitycaution

Only one commit was recorded in the last 3 months, which is weak activity relative to the package's frequent release history and leaves maintenance depth uncertain.

Repo toolingcaution

Composer is used for builds, but no security scanning tool was detected; the missing automated security coverage is a modest transparency and maintenance gap.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Alexis Bouhet

Direct Dependencies

DependencyLast ReleaseScore
cocur/slugify
Version ^v4.5.1
—
—
vlucas/phpdotenv
Version ^v5.6.0
—
—
symfony/var-dumper
Version ^v7.1.2
—
—
zouloux/simple-php-router
Version ^5.4.1
—
—

Weekly Downloads

Info

Last Published
13 days ago
Created
4 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform