Package Health

apifreaks/sdk

Clear documentation, tests, and release notes make integration easier. Organization backing helps, but absent security scanning and a missing security policy leave important maintenance gaps.

Latest v1.1.1PackagistPackagist

68%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

88

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

89

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

80

Health Score Breakdown

Repo commit activitycaution

No commits and no active maintainers were recorded during the past three months. This is a meaningful maintenance-capacity concern, even though the registry shows recent releases and the repository was recently pushed.

Repo popularitycaution

The repository has zero stars, forks, and watchers, providing no community adoption evidence; popularity is supporting evidence, so this is only a modest concern.

Repo toolingcaution

Composer build tooling is present, but no security scanning tool was detected. The missing scanning reduces transparency around dependency and build hygiene.

Security policycaution

The repository has no security policy, leaving maintainers' vulnerability-reporting and response process unclear.

Token permissionscaution

The only workflow does not declare top-level token permissions. Although no write permissions were observed, explicit least-privilege settings would provide stronger workflow hygiene.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

APIFreaks

Direct Dependencies

DependencyLast ReleaseScore
psr/http-client
Version ^1.0
psr/http-factory
Version ^1.0
psr/http-message
Version ^1.1 || ^2.0
php-http/discovery
Version ^1.0
psr/http-client-implementation
Version ^1.0

Weekly Downloads

Info

Last Published
5 days ago
Created
3 months ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform