Package Health

alncris2/laravel-procedure

Recent releases, tests, release notes, and security scanning support continued development. One contributor carries all recent commits, and no security policy is published, leaving limited maintenance redundancy and disclosure guidance.

Latest 0.4.2PackagistPackagist

64%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

88

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Licensecaution

The manifest declares MIT, while the artifact license file is detected as Apache-2.0; although a license file exists, the mismatch creates genuine adoption and compliance uncertainty.

Repo bus factorcaution

One contributor made 100% of the recent commits, so a maintainer departure would leave no demonstrated handoff capacity.

Repo commit activitycaution

Five commits in the last 3 months show recent activity, but all came from one active maintainer, limiting evidence of durable maintenance capacity.

Security policycaution

No repository security policy was found, so users have no documented vulnerability-reporting path; the presence of Sonar scanning helps but does not replace disclosure guidance.

Version stabilitycaution

Version 0.4.2 is not a stable major release, but it is not marked prerelease and recent releases contain documented changes, making this a modest maturity concern rather than a severe risk.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

alncris2

Direct Dependencies

DependencyLast ReleaseScore
illuminate/console
Version ^5.8|^6.0|^7.0|^8.0
—
—
illuminate/support
Version ^5.8|^6.0|^7.0|^8.0
—
—
illuminate/database
Version ^5.8|^6.0|^7.0|^8.0
—
—
illuminate/filesystem
Version ^5.8|^6.0|^7.0|^8.0
—
—

Weekly Downloads

Info

Last Published
3 months ago
Created
5 months ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform