Package Health

yaroslawww/laravel-sproutsocials-api

The package has a useful README, repository tests, stable versioning, and no install-time scripts. Its single maintainer and absent security scanning add smaller concerns, while the package should be replaced because it is deprecated and has had no commits or releases for about three years.

Latest 1.1.0PackagistPackagist

15%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

57

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Using this package? Scan for Free

Health Score Breakdown

Registry deprecationdanger

Packagist marks the entire package as abandoned, with no distinct replacement identified. Package-wide deprecation is a severe dependency risk even though the assessed version is stable.

Release historydanger

The package has only four releases and none in the last 12 months; its latest release was about three years ago. This indicates a prolonged lack of maintenance.

Repo commit activitydanger

The repository recorded zero commits and zero active maintainers in the last three months, consistent with the long release gap. The linked repository is not archived, which provides only limited compensation.

Licensecaution

A license file is present and the repository also contains one, so licensing is not absent. However, the manifest declares MIT while the artifact license is detected as MIT-0, creating a license mismatch that should be clarified.

Repo toolingcaution

The repository uses Composer build tooling, but no security scanning tools were detected. That weakens ongoing dependency and code hygiene.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Yaroslav Georgitsa

Direct Dependencies

No direct dependencies.

Weekly Downloads

Info

Last Published
3 years ago
Created
5 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform