Package Health

callismart/http

Licensing is clear, dependencies are minimal, and the repository matches the package. A security policy and automated security scanning are not evident, so longer-term assurance remains limited.

Latest v1.1.0PackagistPackagist

68%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

88

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Project backingcaution

The repository is owned by a GitHub user rather than an organization, so the single-contributor maintenance concentration is not offset by visible organization backing.

Release historycaution

The package is only 130 days old and has two releases, with about 108 days between them. This is limited evidence of sustained maintenance rather than evidence of abandonment.

Repo bus factorcaution

One contributor holds 100% of the two commits in the last three months, leaving the project dependent on a single active contributor.

Repo commit activitycaution

Only two commits were recorded in the last three months, all from one active maintainer. Recent activity exists, but the small volume provides limited evidence of ongoing maintenance capacity.

Repo toolingcaution

Composer build tooling is present, but no security scanning tools are reported. This is a modest assurance gap for a network-facing HTTP client.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Callistus Nwachukwu

Direct Dependencies

No direct dependencies.

Weekly Downloads

Info

Last Published
1 month ago
Created
4 months ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform