Package Health

alexminza/wc-moldovaagroindbank

It has a clear GPL license, a usable README, and a recent release note. The small maintenance footprint and unpinned deployment actions warrant pinning the version and checking updates.

Latest v1.5.2PackagistPackagist

76%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

67

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

100

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Repo bus factorcaution

One contributor made all commits in the last 3 months, concentrating the observed maintenance capacity in a single person. The repository is user-owned rather than organization-owned, so there is no provided organizational backing to offset that concentration.

Repo commit activitycaution

Only 1 commit was recorded in the last 3 months, showing recent activity but a thin maintenance cadence for a payment integration.

Security policycaution

The repository has no security policy. That is a transparency gap for a payment gateway, where a documented vulnerability-reporting path would be valuable.

Workflow auditcaution

The single workflow was fully analyzed with no untrusted checkouts, script injection, or audit findings, and it avoids top-level write permissions. However, both action references are unpinned, leaving the deployment workflow exposed to changes in referenced action versions.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Alexander Minza

Direct Dependencies

DependencyLast ReleaseScore
maib/maibapi
Version ^3.0
—
—
monolog/monolog
Version ^2.7
—
—
automattic/jetpack-autoloader
Version ^5.0
—
—
alexminza/wc-payment-gateway-base
Version ^1.0
—
—

Weekly Downloads

Info

Last Published
2 months ago
Created
8 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform