Package Health

anasterism/actions

The README is substantial, the repository includes tests, and licensing is clear. Workflow references are not pinned, and no security policy is published.

Latest v1.0.0PackagistPackagist

66%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

67

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

88

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

67

Health Score Breakdown

Project backingcaution

The registry namespace and repository owner match, but the owner is an individual user rather than an organization. This supports package identity while leaving a limited backing structure.

Release historycaution

The package is newly published, with one release and no established release cadence yet. That limits evidence of long-term maintenance.

Repo bus factorcaution

One contributor made all two commits in the last three months, leaving maintenance dependent on a single person. The repository is user-owned rather than organization-owned, so there is no shown organizational handoff buffer.

Repo toolingcaution

Composer build tooling is present, but no security scanning tooling was detected. For a new library, that is a modest transparency and maintenance gap rather than a severe risk.

Security policycaution

The repository has no published security policy, leaving vulnerability-reporting expectations unclear for consumers and maintainers.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

An Asterism

Direct Dependencies

DependencyLast ReleaseScore
illuminate/bus
Version ^9.0|^10.0|^11.0|^12.0|^13.0
—
—
illuminate/auth
Version ^9.0|^10.0|^11.0|^12.0|^13.0
—
—
illuminate/queue
Version ^9.0|^10.0|^11.0|^12.0|^13.0
—
—
illuminate/support
Version ^9.0|^10.0|^11.0|^12.0|^13.0
—
—
illuminate/contracts
Version ^9.0|^10.0|^11.0|^12.0|^13.0
—
—

Weekly Downloads

Info

Last Published
1 day ago
Created
1 day ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform