Package Health

spryker-feature/reclamations

The package has organization backing, regular releases, and a clear README with release notes. Recent work comes from one contributor, while all four workflow actions are unpinned and no security policy or scanning is present.

Latest 202608.0PackagistPackagist

73%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

67

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

88

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

67

Health Score Breakdown

Licensecaution

The manifest declares a proprietary license, and both the package and repository contain a LICENSE file. The release is therefore licensed, though the proprietary terms may restrict reuse compared with a permissive open-source license.

Repo bus factorcaution

One contributor made all two commits in the last three months. Organization backing reduces the risk somewhat, but no second active contributor is shown, so recent maintenance remains concentrated.

Repo commit activitycaution

The repository had two commits in the last three months, showing recent activity, but the volume is modest for the assessment period.

Repo toolingcaution

Composer is used for builds, but no security scanning tools were detected. This is a modest transparency and maintenance gap rather than evidence of abandonment.

Security policycaution

The repository has no security policy. That leaves vulnerability-reporting and response expectations undocumented, which modestly lowers transparency.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

DependencyLast ReleaseScore
spryker/sales-reclamation
Version ^1.3.0
—
—
spryker/sales-reclamation-gui
Version ^2.2.0
—
—

Weekly Downloads

Info

Last Published
1 month ago
Created
7 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform