Package Health

tatenmitdaten/dhl_ship_api

The MIT license, readable documentation, and small runtime dependency set make the codebase straightforward to evaluate. There is little evidence of ongoing release or maintenance discipline, so pinning this version carries meaningful upgrade and compatibility risk.

Latest v0.5PackagistPackagist

42%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

0

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

57

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Release historydanger

The latest registry release was published on April 15, 2019, with no releases in the last 12 months. This substantially raises abandonment and compatibility risk for a package intended to wrap an external API.

Repo commit activitydanger

The repository recorded zero commits and zero active maintainers in the last three months. Combined with no registry releases for years, this indicates weak current maintenance capacity.

Repo package mentiondanger

The repository name does not match the package name and its README does not mention the package. That weakens confidence that the linked source repository is the authoritative project for this release.

Repo toolingcaution

Composer is used for builds, but no security scanning tools were detected. This is a modest transparency and maintenance gap rather than a severe risk on its own.

Security policycaution

The repository has no security policy. For a package handling shipping credentials and an external SOAP API, the lack of a documented vulnerability-reporting path is a meaningful hygiene gap.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Peter Dragicevic

Direct Dependencies

No direct dependencies.

Weekly Downloads

Info

Last Published
7 years ago
Created
8 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform