Package Health

andydefer/laravel-casts

The repository includes tests, build tooling, security scanning, a clear MIT license, and a recent series of releases. However, no commits were recorded in the last three months, and registry publishing depends on one maintainer, so long-term support is uncertain.

Latest v2.0.5PackagistPackagist

61%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

89

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

83

Health Score Breakdown

Maintainerscaution

Only one account has registry publishing access. The repository is user-owned rather than organization-backed, so there is limited visible redundancy if that maintainer stops supporting the package.

Repo commit activitycaution

No commits and no active maintainers were recorded during the last three months. For a package only about four months old, this is a meaningful warning that development may have stalled.

Repo package mentioncaution

The repository name matches the package, reducing the risk of an unrelated source repository, but its README does not mention the package name. That leaves a minor source-identification concern.

Repo popularitycaution

The repository has zero stars, forks, and watchers. Popularity is only supporting evidence, but the absence of any adoption signal provides little reassurance about community visibility.

Security policycaution

No security policy is present in the repository. This is a transparency gap for reporting vulnerabilities, though it is not by itself evidence that the package is unsafe.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Andy Defer

Direct Dependencies

DependencyLast ReleaseScore
laravel/framework
Version ^12.0|^13.0|^14.0|^15.0
—
—

Weekly Downloads

Info

Last Published
3 months ago
Created
4 months ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform