Package Health

speakeasy-sdks/openai-php-sdk

The organization-owned repository matches the package and provides release notes, a README, and a license. Unpinned workflow actions and the absence of a security policy weaken operational transparency.

Latest v1.3.0PackagistPackagist

58%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

67

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

79

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Release historydanger

The package has had no release in about 3 years and 6 months, with zero releases in the last 12 months. Its six-release history shows an effectively abandoned release cadence.

Repo commit activitycaution

The repository recorded zero commits and zero active maintainers in the last 3 months, indicating no current maintenance activity. The repository is not archived, but that does not offset the recent inactivity.

Repo issue activitycaution

There were no new or closed issues or pull requests in the last month, while two pull requests remain open. This provides little evidence of active support or development.

Repo popularitycaution

The repository has only 1 star and no forks, so there is limited external adoption or community visibility. Popularity is supporting evidence rather than a verdict, but it offers little compensating confidence here.

Security policycaution

No security policy was found in the repository, reducing transparency about vulnerability reporting and response. The package still has a linked, matching repository, so this is a hygiene concern rather than a severe risk.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

DependencyLast ReleaseScore
jms/serializer
Version ^3.22
guzzlehttp/guzzle
Version ^7.0

Weekly Downloads

Info

Last Published
3 years ago
Created
3 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform