Package Health

knplabs/packagist-api

Packagist API client.

Latest v3.0.0PackagistPackagist

78%

Total Score

healthy

Healthy: recent releases and active source maintenance support dependable use.

Health Score Breakdown

Repo bus factorcaution

All nine recent commits came from one contributor, so maintenance is vulnerable to contributor availability even though the repository is owned by an organization.

Repo toolingcaution

Composer build tooling is present, but no security scanning tool was detected, leaving security-focused maintenance less visible.

Security policycaution

The repository has no security policy, which is a transparency and vulnerability-reporting gap for a package intended to make HTTP API requests.

Workflow auditcaution

The single workflow was fully analyzed with no dangerous triggers, untrusted checkouts, or audit findings. However, all three action references are unpinned, weakening build reproducibility.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

KnpLabs Team

Direct Dependencies

DependencyLast ReleaseScore
composer/semver
Version ^1.0|^2.0|^3.0
—
—
doctrine/inflector
Version ^1.0 || ^2.0
—
—
php-http/discovery
Version ^1.12
—
—
php-http/client-common
Version ^2.3
—
—
composer/metadata-minifier
Version ^1.0
—
—

Weekly Downloads

Info

Last Published
1 month ago
Created
13 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform