Package Health

lambdatt-php/orders

Usable with caveats: the package is openly licensed, correctly backed by an organization, and has a matching repository with a recent release. However, it has had no commits or active maintainers in the last three months, and its short release history and single registry maintainer leave maintenance capacity uncertain.

Latest v0.1.2PackagistPackagist

58%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

81

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

67

Health Score Breakdown

Repo commit activitydanger

The repository recorded zero commits and zero active maintainers during the last three months, a significant warning that ongoing maintenance may have stopped after the initial release burst.

Maintainerscaution

Only one account has registry publish access, which creates a narrow publishing base. The organization backing shown by project_backing partly offsets this concern, but it does not demonstrate active maintenance by itself.

Release historycaution

The package is only 140 days old and has three releases, all concentrated within about an hour, so there is limited evidence of sustained maintenance.

Repo toolingcaution

Composer is used for the project build, but no security scanning tooling was detected. This is a transparency and process gap, though it is less severe because dangerous_workflows found no analyzed workflow hazards.

Security policycaution

The repository has no security policy, leaving vulnerability reporting and response expectations undocumented for consumers.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Gabriel Valentoni Guelfi

Direct Dependencies

No direct dependencies.

Weekly Downloads

Info

Last Published
5 months ago
Created
5 months ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform