Package Health

coreshop/sofortueberweisung

The repository clearly matches the package and has a usable README, while the stable version and ordinary dependency setup offer little reassurance against abandonment. No security policy or security scanning is present, adding transparency concerns.

Latest 1.0.0PackagistPackagist

12%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

64

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Using this package? Scan for Free

Health Score Breakdown

Registry deprecationdanger

Packagist marks the entire package as abandoned, with no replacement named. This is a direct warning that maintainers no longer support it for new dependencies.

Release historydanger

There has been only one release, published about 10 years ago, with none in the last 12 months. The absence of any subsequent release strongly indicates abandonment.

Repo commit activitydanger

The repository recorded no commits and no active maintainers in the last 3 months; its last push was in 2017. This confirms that the package is not receiving current maintenance.

Repo toolingcaution

Composer is used for builds, which fits the package ecosystem, but no security scanning tools are present. The missing scanning is a modest hygiene concern rather than evidence of abandonment by itself.

Security policycaution

The linked repository has no security policy, leaving no documented process for reporting vulnerabilities. This is a transparency gap, though secondary to the maintenance concerns.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Dominik Pfaffenbauer

Direct Dependencies

DependencyLast ReleaseScore
coreshop/core-shop
Version 1.*
—
—
sofort/sofortlib-php
Version ~3.0.5
—
—
pimcore/installer-plugin
Version >=1
—
—

Weekly Downloads

Info

Last Published
10 years ago
Created
10 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform