Package Health

nowyouwerkn/wecommerce

The package is well documented, licensed, tested, and has a release record, but maintenance has stopped: no releases in the last 12 months and no commits or active maintainers in the last three months. There is also no security policy or automated security scanning, so pinning this version carries ongoing maintenance risk.

Latest 2.5PackagistPackagist

58%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Dependencies
Dependencies
Evaluates the health and security of package dependencies

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

88

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

83

Health Score Breakdown

Repo commit activitydanger

The repository recorded zero commits and zero active maintainers in the last three months, a strong sign that maintenance has stalled.

Dependency profilecaution

The package declares 18 runtime dependencies, including several payment, shipping, and integration SDKs. This is understandable for an e-commerce platform but increases maintenance and compatibility exposure.

Release historycaution

The package has 11 releases and a typical historical interval of about 39 days, but it has had no releases in the last 12 months; this is a meaningful maintenance concern.

Repo issue activitycaution

There are 9 open issues but no new or closed issues, pull requests, or merges in the last month, indicating limited current project activity.

Repo toolingcaution

Composer build tooling is present, but no security scanning tools are configured, leaving an important maintenance and vulnerability-detection gap.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Jorge Peña Lama
Raymundo Cobos
Noe Hassiel Monterrosas
Itzell Elizondo

Direct Dependencies

DependencyLast ReleaseScore
openpay/sdk
Version 2.1.1
—
—
mews/purifier
Version ^3.4.2
—
—
laravel/fortify
Version ^1.11
—
—
guzzlehttp/guzzle
Version ^7.0.1
—
—
laravel/framework
Version ^9.5
—
—

Weekly Downloads

Info

Last Published
2 years ago
Created
4 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform