Package Health

webfleet-connect/php-sdk

The package includes tests, a substantial README, a matching MIT license, and a GitHub release. Its workflow uses read-only permissions but leaves both actions unpinned, and it has no security policy.

Latest 0.1.0PackagistPackagist

65%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

83

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Health Score Breakdown

Release historycaution

This is a young package at 58 days old with only one release, so there is little evidence of sustained maintenance or release stability.

Repo bus factorcaution

One contributor made all two recent commits, leaving maintenance highly concentrated and creating a meaningful continuity risk for this small project.

Repo commit activitycaution

The repository recorded two commits in the last three months, showing some recent activity but limited evidence of an established maintenance rhythm.

Security policycaution

The repository has no security policy, which reduces transparency about how vulnerabilities should be reported for an SDK handling API credentials.

Version stabilitycaution

Version 0.1.0 is not a stable major release, indicating an early API that may change as the project matures.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

DependencyLast ReleaseScore
psr/http-client
Version ^1.0
—
—
psr/http-factory
Version ^1.0
—
—
psr/http-message
Version ^1.1 || ^2.0
—
—
guzzlehttp/guzzle
Version ^7.9
—
—

Weekly Downloads

Info

Last Published
2 months ago
Created
2 months ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform