Package Health

alfredluck/golivephpsdk

The repository is small and has no security policy, while the README leaves usage marked TODO. It does include tests, a changelog, release notes, and an MIT declaration, but the long silence makes this a poor long-term dependency.

Latest v0.0.6PackagistPackagist

40%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

38

Dependencies
Dependencies
Evaluates the health and security of package dependencies

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

69

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

83

Health Score Breakdown

Repo commit activitydanger

There have been no commits and no active maintainers in the last three months, consistent with the package's multi-year release silence. This materially raises abandonment risk.

Dependency profilecaution

Sixteen runtime dependencies create a relatively broad maintenance surface for a small package. The signal does not show that any dependency is abandoned or unsafe, so this is a modest concern rather than a severe one.

Maintainerscaution

Only one registry account can publish the package, leaving little visible publishing redundancy. The linked repository is also owned by that individual, so there is no organizational backing shown to offset the thin maintainer base.

Package scaffoldingcaution

The artifact has a README and changelog, and the repository has tests and changelog support; release notes also document this version. The README's usage section remains TODO, limiting consumer guidance.

Project backingcaution

The registry namespace and repository are owned by the same individual account, and no organization backing is shown. This is consistent ownership but provides limited continuity if that maintainer stops work.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

alfredluck

Direct Dependencies

DependencyLast ReleaseScore
psr/log
Version ^1.1
—
—
pimple/pimple
Version ^3.0
—
—
symfony/cache
Version ^3.3 || ^4.3 || ^5.0
—
—
monolog/monolog
Version ^1.22 || ^2.0
—
—
psr/simple-cache
Version ^1.0
—
—

Weekly Downloads

Info

Last Published
5 years ago
Created
5 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform