Package Health

blockvis/civic-sip-php

It has an MIT license, a matching repository, and release notes for this version. The small, organization-backed codebase has no automated security scanning or published security policy; pin this version only if you can own ongoing maintenance.

Latest v1.1.0PackagistPackagist

43%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

75

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

83

Health Score Breakdown

Release historydanger

The package has made no release in over eight years, with the latest release in March 2018. That long gap is strong evidence of abandonment risk despite eight historical releases.

Repo commit activitydanger

The repository had zero commits and zero active maintainers in the past three months, reinforcing the release-history evidence of stalled maintenance.

Repo issue activitycaution

There are no open issues or pull requests and no issue or pull request activity in the past month. This is consistent with an inactive project, though it is supporting evidence rather than proof of abandonment alone.

Repo toolingcaution

Composer build tooling is present, but the repository has no security scanning tools. That leaves a meaningful maintenance and transparency gap for a client handling identity-related integrations.

Repository archivedcaution

The repository is not archived, although its last push was in August 2019. The unarchived state is a modest positive but does not overcome the prolonged inactivity.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Blockvis Team

Direct Dependencies

DependencyLast ReleaseScore
ramsey/uuid
Version ^3.7
—
—
spomky-labs/jose
Version ^6.1|^7.0
—
—
guzzlehttp/guzzle
Version ^6.3
—
—

Weekly Downloads

Info

Last Published
8 years ago
Created
9 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform