Package Health

bendavison/mandrill

The repository is not archived, the package has a matching Apache-2.0 license, and it has no install-time scripts. Consumer documentation is absent, and the repository does not clearly match the package name. Pin this version only when maintaining an existing integration.

Latest 1.0.55PackagistPackagist

38%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

0

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

67

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

100

Health Score Breakdown

Release historydanger

This package has only one release, published nearly six years ago, with no releases in the last 12 months. That is strong evidence of abandonment risk, despite the stable version designation.

Repo commit activitydanger

The repository recorded zero commits and zero active maintainers in the last three months, consistent with the package's long release gap. No provided maintenance signal compensates for this inactivity.

Package scaffoldingcaution

The published artifact has no README, while this is a library that consumers may need to integrate; the repository also reports no tests or changelog. The exact version does have a GitHub release, which provides some release traceability.

Repo package mentioncaution

The linked repository name does not match the package name, and no README package mention was found. That makes the source-to-package relationship less transparent, although it may still be a legitimate differently named repository.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Ben Davison
Mandrill Devs

Direct Dependencies

No direct dependencies.

Weekly Downloads

Info

Last Published
5 years ago
Created
5 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform