Package Health

onslip/onslip-360-api

The Apache-2.0 license and minimal runtime dependency reduce adoption friction. The organization-backed repository is not archived, but it has had no commits in three months and lacks tests, a README, and security scanning.

Latest 1.37.5PackagistPackagist

61%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

75

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

81

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Package scaffoldingcaution

The artifact has no README, tests, or changelog, and the repository also reports no tests or changelog. The missing README reduces consumer guidance for a PHP SDK, while missing tests and changelog limit transparency about behavior and changes.

Repo commit activitycaution

The repository recorded zero commits and zero active maintainers during the last three months. This is a meaningful maintenance concern, although the recent registry release provides some compensating evidence of ongoing publishing.

Repo popularitycaution

The repository has zero stars and forks and one watcher. Popularity is only supporting evidence, but these numbers provide little external evidence of broad review or community support.

Repo toolingcaution

The project uses Make and Composer, showing basic build structure, but it has no security scanning tool. That leaves a notable repository hygiene gap for a dependency.

Security policycaution

The repository has no security policy. This does not prove a security problem, but it weakens transparency about how dependency issues and vulnerability reports are handled.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

No direct dependencies.

Weekly Downloads

Info

Last Published
4 months ago
Created
3 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform