Package Health

dekuan/depay

DePay Gateway base library by DeKuan, Inc.

Latest 1.0.6PackagistPackagist

38%

Total Score

unhealthy

Risky: no maintenance activity since 2017 and conflicting license metadata make this release a liability.

Health Score Breakdown

Release historydanger

All seven releases appeared within roughly one day in December 2017, and there have been no releases in nearly nine years. That strongly suggests the package is abandoned rather than actively maintained.

Repo commit activitydanger

The repository recorded zero commits and zero active maintainers in the last three months, consistent with the release history showing no updates since 2017. No provided signal compensates for this maintenance gap.

Licensecaution

The artifact includes an MIT license file, so the release is licensed, but its manifest declares a proprietary license while the detected license is MIT. That mismatch reduces transparency and should be resolved before adoption.

Repo toolingcaution

Composer is used as the build tool, which fits the package ecosystem. No security scanning is configured, a minor hygiene gap that is outweighed by the more serious inactivity.

Repository archivedcaution

The repository is not archived, which avoids the strongest abandonment signal, but its last push was in December 2017 and does not offset the lack of current activity.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

liuqixing

Direct Dependencies

DependencyLast ReleaseScore
dekuan/delib
Version >=1.0
—
—
dekuan/vdata
Version >=1.0
—
—
guzzlehttp/guzzle
Version >=1.0
—
—
symfony/http-foundation
Version ~2.1|~3.0
—
—

Weekly Downloads

Info

Last Published
8 years ago
Created
8 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform