Package Health

fancyecommerce/fecshop

Organization backing, a clear license, tests, release notes, and a security policy support adoption. Maintenance is concentrated in one contributor, with no security scanning and little issue activity, so pin this version and monitor the repository.

Latest 2.17.4PackagistPackagist

62%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

63

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

83

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

100

Health Score Breakdown

Release historydanger

The package has 163 releases and historically released about every eight days, but no registry release has appeared for roughly five years. That is a meaningful maintenance and abandonment concern.

Repo bus factorcaution

All two recent commits came from one contributor, concentrating current maintenance risk. Organization ownership provides some handoff capacity, but no second active contributor is shown.

Repo commit activitycaution

The repository recorded two commits in the past three months, showing recent activity but at a very low pace for a large ecommerce system.

Repo issue activitycaution

Only four issues are open, but there were no new or closed issues and no pull-request activity in the past month. This suggests limited visible maintenance.

Repo toolingcaution

Composer is used for builds, but no security-scanning tool was detected. For a large ecommerce application, that is a meaningful transparency and maintenance gap.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

terry

Direct Dependencies

DependencyLast ReleaseScore
ramsey/uuid
Version *
—
—
yiisoft/yii2
Version >=2.0.40
—
—
geoip2/geoip2
Version 2.10.0
—
—
league/iso3166
Version ^2.1
—
—
facebook/graph-sdk
Version *
—
—

Weekly Downloads

Info

Last Published
5 years ago
Created
10 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform