Package Health

versa-saude/versa-atende-sdk

This is a newly published v1.0.0 package with only one release and no maturity history, so long-term maintenance and compatibility remain unproven. The release is nevertheless reasonably transparent and usable: it has a README, tests in both the artifact and repository, a complete small file tree, an MIT declaration, no install-time lifecycle scripts, no deprecation notice, and the repository is active and not archived. The main concerns are the package's age, zero repository popularity, lack of a security policy or security-scanning tooling, and the absence of broader activity evidence; these warrant caution before making it a foundational dependency, but do not indicate that it is currently unfit to use.

Latest v1.0.0PackagistPackagist

68%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

75

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

83

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

90

Health Score Breakdown

Project backingcaution

The source repository is owned by an individual GitHub user rather than an organization, so the package has limited visible institutional backing. This is a caution about bus-factor context, not proof of abandonment.

Release historycaution

The package is 0 days old with only one release, so there is no demonstrated maintenance cadence or track record for compatibility and issue response.

Repo popularitycaution

The repository has zero stars, forks, and watchers. Because the package is newly released, this is weak negative evidence rather than a standalone abandonment conclusion, but it provides no external adoption signal.

Repo toolingcaution

Composer build tooling is present, but no security-scanning tools are reported. The missing scanning capability is a modest supply-chain hygiene gap.

Security policycaution

The repository has no security policy. For an SDK that handles external API credentials and tenant tokens, this is a genuine disclosure and maintenance-process gap.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Versa Saúde

Direct Dependencies

DependencyLast ReleaseScore
illuminate/http
Version ^9.0|^10.0|^11.0
guzzlehttp/guzzle
Version ^7.0
illuminate/support
Version ^9.0|^10.0|^11.0
illuminate/database
Version ^9.0|^10.0|^11.0

Weekly Downloads

Info

Last Published
9 days ago
Created
9 days ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform