Package Health

webgriffe/sylius-pagolight-plugin

Sylius plugin for HeyLight payment gateway (ex PagoLight BNPL and PagoLight PRO)

Latest v3.0.1PackagistPackagist

62%

Total Score

caution

Usable with caveats: no recent commits and all workflow actions are unpinned.

Health Score Breakdown

Repo commit activitycaution

The repository recorded no commits and no active maintainers in the last three months. Although a release was published during the broader period, this indicates a meaningful recent maintenance gap.

Repo package mentioncaution

The repository name does not match the package name and its README does not mention the package, creating uncertainty about whether the linked repository directly represents this release.

Security policycaution

The repository has no SECURITY policy, which leaves vulnerability reporting and response expectations undocumented.

Workflow auditcaution

All seven analyzed workflow action references are unpinned, reducing build reproducibility. The reported cache-poisoning findings have low confidence and therefore add no material risk on their own; the workflow audit itself was complete.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

DependencyLast ReleaseScore
sylius/sylius
Version ^2.1
—
—
guzzlehttp/psr7
Version ^2.5
—
—
psr/http-factory
Version ^1.0
—
—
php-http/discovery
Version ^1.19
—
—

Weekly Downloads

Info

Last Published
6 months ago
Created
2 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform