Package Health

artflow-studio/uploader

The repository includes tests, a changelog, a security policy, and two active contributors. The workflow uses read-only permissions but all four actions are unpinned, increasing build reproducibility risk.

Latest 0.2.0PackagistPackagist

69%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

83

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

79

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

100

Health Score Breakdown

Project backingcaution

The repository is owned by an individual rather than an organization, so there is no organizational maintenance cushion; the two active contributors partly offset that limitation.

Release historycaution

The package is only 177 days old with two releases and a median interval of about 152 days, so its maintenance pattern is still lightly established.

Repo toolingcaution

Composer build tooling is present, but no security-scanning tool was detected; that is a modest transparency gap rather than evidence of unsafe behavior.

Version stabilitycaution

Version 0.2.0 is not a prerelease, but the package remains below 1.0 and has only two releases, leaving limited evidence of mature stability.

Workflow auditcaution

The single workflow was fully analyzed, uses read-only permissions, and has no flagged audit findings, but all four action references are unpinned, weakening supply-chain reproducibility.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

ArtFlow Studio

Direct Dependencies

DependencyLast ReleaseScore
livewire/livewire
Version ^3.0|^4.0
—
—
illuminate/support
Version ^11.0|^12.0
—
—
illuminate/filesystem
Version ^11.0|^12.0
—
—

Weekly Downloads

Info

Last Published
1 month ago
Created
6 months ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform