Package Health

shopper/fedex

The package has a useful README, MIT licensing, and organization backing. Its tiny artifact and absent tests provide limited maturity evidence, so pin cautiously until a stable release has a longer track record.

Latest v3.0.0-rc.1PackagistPackagist

60%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

63

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Health Score Breakdown

Release historycaution

This package was released less than a day ago and has only one release, so there is no meaningful history for judging maintenance or release stability.

Repo bus factorcaution

All one recorded commit in the last three months came from a single contributor, leaving no demonstrated contributor redundancy. Organization ownership provides some handoff capacity but does not replace evidence of a second active contributor.

Repo toolingcaution

The repository uses Composer, but no security-scanning tooling was detected. For a small early-stage package this is a modest transparency gap, not evidence of unsafe code.

Security policycaution

The linked repository has no security policy, reducing transparency about how dependency and vulnerability reports should be handled. This is a hygiene and maintenance concern rather than a standalone severe risk.

Version stabilitycaution

The assessed version is a prerelease, and all recent releases are prereleases. That is expected during early development but makes production compatibility less certain.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

DependencyLast ReleaseScore
shopper/core
Version self.version
illuminate/http
Version ^12.68|^13.27
shopper/shipping
Version self.version
illuminate/support
Version ^12.68|^13.27

Weekly Downloads

Info

Last Published
1 day ago
Created
1 day ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform