Package Health

robert-damon/php-huobi-api

The three-file package lacks a README, and its declared MIT license conflicts with the Apache-2.0 license found in the artifact. The stable 1.0.0 release and release notes provide limited documentation but do not offset the maintenance concern.

Latest 1.0.0PackagistPackagist

38%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

0

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

38

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

67

Health Score Breakdown

Release historydanger

This package has had only one release, published in April 2019, with no releases in the last 12 months. That long period without updates is a strong abandonment concern for an API client.

Repo commit activitydanger

The repository recorded zero commits and zero active maintainers in the last three months, consistent with the release history showing no activity since April 2019.

Licensecaution

A license file is present, but the manifest declares MIT while the artifact license file is detected as Apache-2.0. The mismatch creates legal ambiguity for consumers.

Package file treecaution

The package and repository each contain only LICENSE, composer.json, and lib.php. This is a very small project surface and leaves little visible evidence of testing or documentation practices.

Package scaffoldingcaution

The artifact has no README, which makes integrating this library harder, although the exact-version GitHub release notes provide some documentation. Missing tests and changelog files are normal for published artifacts and are not counted against it.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

DependencyLast ReleaseScore
ratchet/pawl
Version ^0.3.0
—
—
react/socket
Version ^1.0 || ^0.8 || ^0.7
—
—
ratchet/rfc6455
Version ^0.2.3
—
—

Weekly Downloads

Info

Last Published
7 years ago
Created
7 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform