Package Health

openhandle/sdk

The SDK has clear documentation, typed models, tests in the source repository, and a security policy. Its release and commit history is too new to establish staying power, while workflow actions are not pinned.

Latest v1.2.6PackagistPackagist

72%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

83

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

94

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

88

Health Score Breakdown

Release historycaution

The package is less than one day old with only three releases, all arriving within about three hours. This is too little history to demonstrate sustained maintenance.

Repo commit activitycaution

The repository reports zero commits and zero active maintainers over the past three months, but the project itself is less than one day old. This limits evidence of staying power rather than proving abandonment.

Workflow auditcaution

All seven workflows were analyzed successfully, use read-only permissions, and have no reported findings or untrusted checkout and script-injection sinks. However, all 10 action references are unpinned, leaving avoidable supply-chain drift risk.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

OpenHandle

Direct Dependencies

DependencyLast ReleaseScore
guzzlehttp/guzzle
Version ^7.9
—
—

Weekly Downloads

Info

Last Published
21 hours ago
Created
1 day ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform