Package Health

postfinancecheckout/shopware-6

This is a mature and actively released package with 137 releases over roughly 6 years, 24 releases in the last 12 months, a stable non-prerelease version, an explicit Apache-2.0 license, a non-archived organization-owned repository, and no registry deprecation. The main concerns are that recent repository activity is concentrated in one contributor, the repository has no security scanning or security policy, and neither the artifact nor repository reports tests; these reduce resilience and transparency but do not outweigh the strong release cadence, project backing, documentation, changelog, and package-repository alignment. It appears reasonable to depend on, with normal diligence around monitoring updates and validating the integration in your own environment.

Latest 7.3.7PackagistPackagist

78%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

70

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

89

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

88

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

PostFinance Checkout

Direct Dependencies

DependencyLast ReleaseScore
shopware/core
Version ~6.7.0
shopware/storefront
Version ~6.7.0
postfinancecheckout/sdk
Version ^4.8.1
shopware/administration
Version ~6.7.0

Weekly Downloads

Info

Last Published
5 days ago
Created
6 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform