Package Health

pufferpost/sdk

The package includes a README, tests, MIT license, and no install-time scripts. The organization-owned repository is active, but has no security policy or scanning.

Latest v0.1.4PackagistPackagist

70%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

79

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Release historycaution

The package is only 15 days old, with five releases and a median interval of about 10 hours. This shows active initial development but provides too little history to establish long-term maintenance.

Repo toolingcaution

Composer is used as the build tool, but no security scanning tools were detected. For an SDK handling API credentials, that is a modest transparency and maintenance gap.

Security policycaution

The repository has no security policy. This does not show a vulnerability, but it leaves disclosure and security-maintenance expectations undocumented.

Version stabilitycaution

Version v0.1.4 is an early 0.x release rather than a stable-major release. That is normal for a new package but indicates a higher likelihood of API change.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

DependencyLast ReleaseScore
symfony/http-client
Version ^6.4 || ^7.0 || ^8.0
symfony/http-client-contracts
Version ^3.0

Weekly Downloads

Info

Last Published
2 days ago
Created
18 days ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform