Package Health

enconvert/enconvert-php

Healthy enough to use, with the main caveat that it is a young 0.x SDK with limited testing and security-process evidence. Recent releases, an active organization-owned repository, clear documentation, and two active contributors support continued maintenance.

Latest v0.1.1PackagistPackagist

78%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

100

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

72

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

83

Health Score Breakdown

Package scaffoldingcaution

The package includes a substantial README, while the absence of packaged tests and a changelog is normal for a published library artifact. The repository also lacks tests and this release has no GitHub release notes, so release documentation is limited.

Release historycaution

This is a young package, released three times over 64 days with a median interval of about 32 days. That shows recent activity but not yet a long maintenance record.

Repo popularitycaution

The repository has only 5 stars and no forks or watchers, indicating limited adoption evidence, though popularity is supporting evidence rather than a health verdict.

Repo toolingcaution

Composer is used for builds, but no security scanning tools were detected, leaving a modest gap in repository security hygiene.

Security policycaution

The repository has no security policy, reducing transparency about vulnerability reporting and handling for an SDK that handles API credentials.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Enconvert

Direct Dependencies

DependencyLast ReleaseScore
guzzlehttp/guzzle
Version ^7.8

Weekly Downloads

Info

Last Published
6 days ago
Created
2 months ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform