Package Health

stas-dovgodko/viessmann-api

The package includes tests, documentation, and a repository that is not archived. Its small user footprint and missing security policy add little reassurance.

Latest 1.3.4PackagistPackagist

42%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

0

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

79

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

83

Health Score Breakdown

Release historydanger

The package has had no release in nearly six years: all 14 releases, including 1.3.4, were published on November 27, 2020. This is strong evidence of abandonment for a dependency that may need API or service updates.

Repo commit activitydanger

The repository recorded zero commits and zero active maintainers during the last three months, consistent with the release history showing no activity since November 2020.

Licensecaution

The manifest declares MIT and the repository has a license file, but the artifact detector identifies GPL-2.0 text. The declaration and detected license do not clearly cover the same terms, creating a licensing concern.

Security policycaution

The linked repository has no security policy. This is a transparency and vulnerability-reporting gap, though the repository is still present and not archived.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

thetrueavatar

Direct Dependencies

DependencyLast ReleaseScore
psr/link
Version ^1.0
—
—
tomphp/siren
Version v0.1.0
—
—
phpunit/phpunit
Version ^7.3.2
—
—
lusitanian/oauth
Version v0.8.11
—
—

Weekly Downloads

Info

Last Published
6 years ago
Created
8 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform