Package Health

sprain/nftport-api-client

The small codebase includes tests, a useful README, an MIT license, and a release note for this version. Its minimal security documentation and unpinned workflow actions leave additional maintenance and build-integrity gaps.

Latest v1.1PackagistPackagist

48%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

33

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

78

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Release historydanger

The package has only two releases, with the latest published in January 2022 and none in the last 12 months. This long release gap is strong evidence of abandonment risk for an API client.

Repo commit activitydanger

The repository recorded zero commits and zero active maintainers in the last three months, with the last push in January 2022. This substantially increases abandonment risk.

Project backingcaution

The registry namespace and repository owner are the same individual account, so the package has clear ownership but no demonstrated organizational backing to compensate for its narrow maintainer base.

Repo issue activitycaution

There are no open issues or pull requests, and no recent issue or pull request activity. This is consistent with a dormant project, though it is weaker evidence than the release and commit history.

Repo popularitycaution

The repository has only 2 stars, 2 forks, and 1 watcher. Low popularity limits community support and is a supporting concern, not a decisive health verdict.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Manuel Reinhard
Additional contributors

Direct Dependencies

DependencyLast ReleaseScore
jms/serializer
Version ^3.14
guzzlehttp/guzzle
Version ^7.0

Weekly Downloads

Info

Last Published
4 years ago
Created
4 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform