Package Health

andrey-helldar/laravel-lang-publisher

The linked project remains maintained, with repository tests, release notes for this version, and a security policy. Use laravel-lang/publisher instead, which is the listed replacement.

Latest v10.3.0PackagistPackagist

20%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

67

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Using this package? Scan for Free

Health Score Breakdown

Registry deprecationdanger

Packagist marks the entire package as abandoned and explicitly names laravel-lang/publisher as its replacement. This is a severe adoption risk for a new dependency.

Release historydanger

The registry shows no releases in the last 12 months and lists the latest release as more than four years old, despite the assessed version being stable. This weakens confidence in the published package.

Repo commit activitycaution

The repository recorded zero commits and zero active maintainers in the last three months. Although the repository is not archived, this indicates currently weak observable maintenance activity.

Workflow auditcaution

All six workflows were analyzed with no audit findings, but all eight action references are unpinned and four workflows grant top-level write permissions. These are workflow hygiene concerns, not a standalone reason to reject the package.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Andrey Helldar

Direct Dependencies

DependencyLast ReleaseScore
laravel-lang/lang
Version ^10.1.9
—
—
illuminate/console
Version ^7.0|^8.0|^9.0
—
—
illuminate/support
Version ^7.0|^8.0|^9.0
—
—
illuminate/contracts
Version ^7.0|^8.0|^9.0
—
—
dragon-code/contracts
Version ^1.21.1
—
—

Weekly Downloads

Info

Last Published
4 years ago
Created
8 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform