Package Health

sarahman/sms-gateway

The package includes a usable README, a clear nine-file source tree, and an MIT declaration. It has no security scanning and very little community activity, increasing the cost of relying on an old library.

Latest v1.0PackagistPackagist

38%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

25

Dependencies
Dependencies
Evaluates the health and security of package dependencies

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

72

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

83

Health Score Breakdown

Release historydanger

Only one release exists, published more than eight years ago, with no releases in the last 12 months. This is strong evidence of abandonment risk for a library dependency.

Repo commit activitydanger

There were zero commits and zero active maintainers in the last three months. Combined with the old last release, this indicates a substantial abandonment risk.

Dependency profilecaution

The package declares eight runtime dependencies and no development dependencies. The dependency set is not excessive, but the absence of development dependencies provides little evidence of maintained testing or development practice.

Project backingcaution

The package and repository are owned by the same individual account, so there is no organization backing shown to compensate for the very small maintainer and contributor base.

Repo popularitycaution

The repository has one star, zero forks, and one watcher, providing very little independent adoption or community support.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Shaharia Azam

Direct Dependencies

DependencyLast ReleaseScore
guzzlehttp/psr7
Version ^1.4
php-http/httplug
Version ^1.1
psr/http-message
Version ^1.0
php-http/discovery
Version ^1.4
php-http/guzzle6-adapter
Version ^1.1

Weekly Downloads

Info

Last Published
8 years ago
Created
8 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform