Package Health

spryker/testify-backend-api

Clear tests, release notes, and a matching repository improve confidence. The 0.x version, infrequent releases, absent security policy, and two unpinned workflow actions leave modest maintenance and hygiene reservations.

Latest 0.1.3PackagistPackagist

82%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

79

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Release historycaution

The package has four releases over about two and a half years, with two releases in the last 12 months and a median interval of about nine months. This is deliberate but slow, so it is a modest maintenance concern.

Repo toolingcaution

Composer build tooling is present, but no security-scanning tooling was detected. The missing scanning is a modest process gap, not evidence that the package is unsafe.

Security policycaution

The repository has no security policy, leaving no documented process for reporting or handling vulnerabilities. This lowers transparency but does not by itself indicate abandonment.

Version stabilitycaution

Version 0.1.3 is not a prerelease, but the package remains below 1.0, indicating a less mature compatibility promise. That is a caveat rather than a severe adoption risk.

Workflow auditcaution

The single workflow was fully analyzed with no injection or high-severity findings, and it has no top-level write permissions. Two of four action references are unpinned, which creates a minor reproducibility and workflow-integrity gap.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

DependencyLast ReleaseScore
spryker/log
Version ^3.0.0
—
—
spryker/queue
Version ^1.25.0
—
—
spryker/kernel
Version ^3.73.0
—
—
spryker/symfony
Version ^3.0.0
—
—
spryker/testify
Version ^3.0.0
—
—

Weekly Downloads

Info

Last Published
1 month ago
Created
2 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform