Healthy and suitable to use, with a thin recent contributor base as the main caveat. It has frequent releases, current repository activity, clear licensing, tests, and organization backing, though the repository lacks security scanning and a security policy.
78%
Total Score
63
100
94
90
All recent commits came from one contributor, creating concentration risk. Organization backing partly compensates, but no second active contributor is shown in this signal.
There was one commit in the last 3 months by one active maintainer. Recent activity exists, but the low volume is a maintenance caution despite the package's frequent release history.
The repository has 4 open issues and 1 open pull request, but no issues or pull requests were opened or closed in the last month. This is a modest sign that support activity may be limited.
Composer is used as a build tool, but no security scanning tools are configured. The missing scanning lowers transparency somewhat, while the package's tests, releases, and current activity provide partial compensation.
The repository has no security policy. That leaves vulnerability-reporting expectations unclear, although this is a hygiene gap rather than evidence of abandonment.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
tamara-solution/php-sdk Version ^2.0.11 || ^3.0.3 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.