Package Health

imper86/php-immi-api

It has a clear MIT license, a useful README, and a repository that clearly matches the package. The small, single-maintainer project has no tests or security policy, limiting confidence in future fixes.

Latest v2.0.0PackagistPackagist

58%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

78

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Maintainerscaution

One registry publisher is listed. This is a limited publishing base for a user-owned project and provides little redundancy if the maintainer becomes unavailable.

Project backingcaution

The package and repository are owned by the same individual account rather than an organization, so there is no demonstrated organizational backing to compensate for the thin maintainer base.

Release historycaution

The package has 13 releases since February 2020, but none in the last 12 months and its latest release was over three years ago, indicating substantial maintenance inactivity.

Repo commit activitycaution

There were no commits and no active maintainers in the last three months, consistent with the release history showing no release for over three years.

Repo popularitycaution

The repository has zero stars, one fork, and one watcher. Popularity is only supporting evidence, but these figures provide little evidence of a broad user or contributor community.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

imper

Direct Dependencies

DependencyLast ReleaseScore
lcobucci/jwt
Version ^3.3
—
—
symfony/options-resolver
Version ^4.0 || ^5.0
—
—
imper86/http-client-builder
Version ^1.0 || ^2.0
—
—

Weekly Downloads

Info

Last Published
3 years ago
Created
6 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform