Package Health

fajarsulaksono/ubl-invoice

Usable with caveats: it is a clearly identified, licensed package with tests, documentation, and a clean initial release. However, it has only one release and no commits or active maintainers recorded in the last three months, so its longer-term maintenance is unproven.

Latest v1.0.0PackagistPackagist

68%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

83

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

80

Health Score Breakdown

Project backingcaution

The registry namespace and repository owner match, but the project is backed by an individual account rather than an organization, so continuity depends on a single owner.

Release historycaution

Only one release has been published, 49 days after the first release, so there is not yet enough history to establish sustained maintenance.

Repo commit activitycaution

The repository recorded zero commits and zero active maintainers during the last three months. Because the package is only 49 days old, this is evidence of an unproven maintenance track record rather than severe abandonment.

Repo popularitycaution

The repository has zero stars, forks, and watchers. Popularity is only supporting evidence, but these counters provide no external indication of adoption or review.

Repo toolingcaution

Composer build tooling is present, but no security scanning tool was detected, leaving a modest transparency and maintenance gap.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Fajar Sulaksono

Direct Dependencies

DependencyLast ReleaseScore
sabre/xml
Version ^3.0 || ^4.0
illuminate/support
Version ^10.0 || ^11.0 || ^12.0 || ^13.0

Weekly Downloads

Info

Last Published
1 month ago
Created
1 month ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform