Package Health

fillup/guzzle-services

The artifact is well structured, tested, documented, and clearly licensed, with a repository that matches the package. Its zero security tooling and very small community provide little additional assurance for future maintenance.

Latest 0.5.1PackagistPackagist

42%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

25

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

67

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

88

Health Score Breakdown

Release historydanger

The package has had no releases in the past 12 months, and its latest release was about 10 years ago. This is strong evidence of abandonment risk, although the package is not deprecated or archived.

Repo commit activitydanger

There were no commits and no active maintainers in the past three months. Combined with the last push being about 10 years ago, this is strong evidence that maintenance has stopped.

Project backingcaution

The repository is owned by a personal user account rather than an organization. This provides no visible organizational backing to offset the thin current maintenance evidence.

Repo popularitycaution

The repository has zero stars and three forks, offering little evidence of a broad active user community. Popularity is only supporting evidence, so this reinforces rather than determines the abandonment concern.

Repo toolingcaution

The repository uses Make and Composer, but no security scanning tools were detected. This is a meaningful hygiene gap, though it is less serious than the package's lack of current maintenance.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Michael Dowling

Direct Dependencies

DependencyLast ReleaseScore
guzzlehttp/command
Version 0.7.*
—
—

Weekly Downloads

Info

Last Published
9 years ago
Created
12 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform