Package Health

geekcodev/laravel-max-client

Laravel adapter for the MAX Messenger Bot API client (geekcodev/max-php-client)

Latest v1.2.1PackagistPackagist

72%

Total Score

caution

Usable with caveats: active releases and tests are offset by a single-contributor maintenance base.

Health Score Breakdown

Project backingcaution

The repository is owned by an individual account rather than an organization, so the single-maintainer and concentrated-activity findings are not softened by visible organizational backing.

Repo bus factorcaution

One contributor made 100% of the 21 recent commits, creating a genuine single-person continuity risk; the active release cadence partly offsets but does not remove it.

Repo commit activitycaution

The repository recorded 21 commits in three months, but all activity came from one active maintainer, limiting continuity if that person stops work.

Security policycaution

The repository has no published security policy. This is a transparency gap, although the presence of composer-audit provides some compensating security practice.

Workflow auditcaution

The workflow audit completed cleanly with no dangerous triggers, untrusted checkouts, injection findings, or high-severity issues. However, all three action references are unpinned, leaving workflow dependencies less reproducible.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Evgeny Semenov

Direct Dependencies

DependencyLast ReleaseScore
psr/http-client
Version ^1.0
—
—
psr/http-factory
Version ^1.0
—
—
psr/http-message
Version ^1.1|^2.0
—
—
guzzlehttp/guzzle
Version ^7.15
—
—
laravel/framework
Version ^12.0|^13.0
—
—

Weekly Downloads

Info

Last Published
5 days ago
Created
2 months ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform