Package Health

prestashop/statsbestvouchers

The repository is backed by an organization, includes tests, release notes, and dependabot, with no deprecation or archive status. Recent commit activity is currently absent, and all 13 workflow actions are unpinned, so maintenance and build-integrity risk remain.

Latest v2.1.0PackagistPackagist

72%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

75

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

94

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Release historycaution

The package is mature, with releases since 2017, but only four releases overall and a median interval of about 3.8 years indicate a slow release cadence.

Repo commit activitycaution

The repository has zero commits and zero active maintainers in the past three months. With only one release in the past year, this indicates currently paused maintenance rather than an actively evolving project.

Repo issue activitycaution

There are no open issues or pull requests and no issue or pull-request activity in the past month. This is neutral for a small stable module but provides little evidence of active support.

Security policycaution

The repository has no security policy. This is a transparency gap for reporting vulnerabilities, though the small dependency profile and organization backing partly reduce its significance.

Workflow auditcaution

All three workflows were analyzed successfully with no trigger, injection, or auditor findings, and none grants top-level write access. However, all 13 action references are unpinned, leaving builds exposed to upstream action changes.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

PrestaShop SA

Direct Dependencies

No direct dependencies.

Weekly Downloads

Info

Last Published
11 months ago
Created
9 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform