Package Health

jacobdekeizer/dpd-shipper-client

The package has no tests, changelog, or security scanning, and its two workflow actions are unpinned. The focused repository and clear README help, but maintenance evidence is too thin for a dependable integration.

Latest v0.2.0PackagistPackagist

48%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

79

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Package scaffoldingcaution

The artifact includes a substantial README, which supports adoption, but the source repository reports no tests or changelog. The missing tests reduce maintenance confidence for an API integration library.

Release historycaution

Only three releases were published, all within about one hour on October 19, 2023, with no releases in the last 12 months. That is a strong sign of an inactive release process.

Repo commit activitycaution

The repository recorded zero commits and zero active maintainers in the last three months; its last push was in June 2024, roughly two years before this assessment.

Repo toolingcaution

Composer is used for builds, but no security scanning tools are configured. This leaves a meaningful review and maintenance gap, though it is not evidence of malicious behavior.

Security policycaution

The repository has no security policy, so there is no documented path for reporting vulnerabilities or describing supported security practices.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Jacob de Keizer

Direct Dependencies

DependencyLast ReleaseScore
symfony/serializer
Version ^6.3
symfony/property-access
Version ^6.3
phpdocumentor/reflection-docblock
Version ^5.3

Weekly Downloads

Info

Last Published
2 years ago
Created
2 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform