Package Health

antoinelemaire/braze-php

Risky to adopt: Packagist marks the package abandoned, and it has had no release or commit activity in the last 12 months. The repository is licensed, documented, and not archived, but those positives do not offset the package-level abandonment warning.

Latest 0.0.2PackagistPackagist

28%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

71

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Registry deprecationdanger

Packagist marks the package abandoned at package scope, with no distinct replacement identified beyond the same package name. This is a severe adoption risk because the registry is explicitly warning that this dependency should no longer be relied on.

Release historycaution

The package has only two releases since March 2021, with no releases in the last 12 months and a median release interval of about 4.5 years. The sparse release history materially increases abandonment and maintenance risk.

Repo commit activitycaution

The repository recorded zero commits and zero active maintainers in the last 3 months, consistent with the absence of recent releases. Although the repository was pushed recently for the assessed release, there is no evidence of ongoing maintenance afterward.

Repo toolingcaution

The repository uses Composer for builds, which fits this PHP package. No security scanning is configured, a modest hygiene gap, but it does not outweigh the package abandonment warning on its own.

Security policycaution

The repository has no published security policy. This weakens vulnerability-reporting transparency, though the small package scope and other repository documentation provide limited compensation.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

AntoineLemaire

Direct Dependencies

DependencyLast ReleaseScore
guzzlehttp/guzzle
Version ~6.0|~7.0
—
—

Weekly Downloads

Info

Last Published
1 year ago
Created
5 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform