Package Health

seshac/laravel-shiprocket-api

The package has a substantial README, release notes, repository tests, and a small dependency set. Its last registry release was over four years ago, the repository is archived, and the package is deprecated; its workflows also use an unpinned container image.

Latest 2.0.0PackagistPackagist

10%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

0

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

40

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Using this package? Scan for Free

Health Score Breakdown

Registry deprecationdanger

Packagist marks the entire package as abandoned, with no replacement named. This is a severe adoption risk because future fixes and compatibility support are not expected.

Release historydanger

The latest release was in December 2021, with no releases in the last 12 months. The established release history is outweighed by more than four years without a registry release.

Repo commit activitydanger

The repository had zero commits and zero active maintainers in the last three months. This confirms that the package is not receiving current development attention.

Repository archiveddanger

The linked repository is archived, so active maintenance has ended even though it was pushed in February 2024. This strongly outweighs the otherwise useful source history.

Workflow auditcaution

Both workflows lack top-level permissions, which is common, and no untrusted triggers or script injection were found. However, the audit identified a high-confidence unpinned container image, leaving a supply-chain hygiene concern.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Sesha

Direct Dependencies

No direct dependencies.

Weekly Downloads

Info

Last Published
4 years ago
Created
6 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform