Package Health

nesthus/vipps-laravel

Documentation, tests, and licensing are in place. The project is very young, and its sole contributor plus unpinned CI actions leave limited maintenance and build assurance.

Latest v0.2.0PackagistPackagist

62%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

81

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Project backingcaution

The repository is owned by an individual account rather than an organization, so there is no provided evidence of organizational maintenance capacity to offset the concentrated contributor base.

Release historycaution

The package is only 32 days old and has two releases, both published within about four hours. That shows initial activity but gives little evidence of long-term maintenance.

Repo bus factorcaution

All four recent commits came from one contributor, giving the project a very low bus factor and making maintenance continuity dependent on a single person.

Repo commit activitycaution

Four commits were made in the last three months, showing some recent activity, but the small volume provides only limited evidence of sustained maintenance.

Repo toolingcaution

Composer build tooling is present, but no security scanning tools were detected. That is a modest transparency and maintenance gap for a package handling payment integrations.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Terje Nesthus

Direct Dependencies

DependencyLast ReleaseScore
psr/log
Version ^3.0
—
—
illuminate/http
Version ^11.0 || ^12.0 || ^13.0
—
—
illuminate/cache
Version ^11.0 || ^12.0 || ^13.0
—
—
guzzlehttp/guzzle
Version ^7.8
—
—
laravel/socialite
Version ^5.12
—
—

Weekly Downloads

Info

Last Published
1 month ago
Created
1 month ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform