Package Health

socialiteproviders/pipedrive

The package includes a clear README, an MIT declaration, and release notes for PHP 8. Its linked organization-owned repository matches the package, but the registry release history and current commit activity provide limited evidence of ongoing maintenance.

Latest 4.1.0PackagistPackagist

52%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

83

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

85

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

83

Health Score Breakdown

Name lookalikecaution

The detector reports identity borrowing toward socialiteproviders/manager, but artifact overlap is zero and the matching repository identifies this as a distinct Pipedrive provider; the signal warrants caution without establishing a copy.

Release historycaution

The package has had no registry release in nearly six years, despite four releases overall; this materially raises maintenance and abandonment risk.

Repo commit activitycaution

No commits or active maintainers were recorded in the last three months, which weakens the evidence of active maintenance even though the repository is not archived.

Repo toolingcaution

Composer build tooling is present, but no security scanning tools were detected; this is a modest transparency and hygiene gap rather than a severe risk.

Security policycaution

The repository has no security policy, reducing guidance for reporting vulnerabilities in an OAuth provider, though this alone does not make the release unfit.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Daniele Timo

Direct Dependencies

DependencyLast ReleaseScore
socialiteproviders/manager
Version ~4.0
—
—

Weekly Downloads

Info

Last Published
5 years ago
Created
8 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform