Package Health

janwebdev/omnipay-cardinity

Strong packaging, tests, documentation, and licensing make the release straightforward to evaluate and use. The missing security policy and fully unpinned workflow actions leave some maintenance and build-integrity gaps.

Latest v1.0.0PackagistPackagist

58%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

92

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Health Score Breakdown

Maintainerscaution

One registry maintainer is a thin publishing base for a user-owned project, leaving limited visible capacity for continuity if that person stops maintaining it.

Release historycaution

This is the package's only release, published about 4 years ago, with no releases in the last 12 months. That makes ongoing maintenance and compatibility less certain.

Repo commit activitycaution

The repository recorded 0 commits and 0 active maintainers in the last 3 months, consistent with a project that has seen no development since its initial release.

Security policycaution

The repository has no security policy, so users are given no documented process for reporting vulnerabilities or receiving security guidance.

Workflow auditcaution

The only workflow was fully analyzed with no dangerous triggers, sinks, or audit findings, but both action references are unpinned. That is a modest build-integrity weakness rather than a severe workflow risk.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Jan Rogozinsky

Direct Dependencies

DependencyLast ReleaseScore
league/omnipay
Version ^3
—
—

Weekly Downloads

Info

Last Published
4 years ago
Created
4 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform