Package Health

avexsoft/donkey

The smart-ass Laravel package to manage `config()` in production

Latest 1.0.15PackagistPackagist

72%

Total Score

caution

Usable with caveats: a high-confidence unpinned container image weakens the release workflow.

Health Score Breakdown

Security policycaution

The repository has no published security policy. This reduces vulnerability-reporting transparency, though the package has active commits and a complete workflow audit.

Workflow auditcaution

All 8 analyzed action references are unpinned, including a high-confidence, high-severity unpinned container image in php-cs-fixer.yml. The audit found no untrusted checkout or script-injection path, limiting the impact to workflow supply-chain hygiene.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

avexsoft

Direct Dependencies

DependencyLast ReleaseScore
doctrine/dbal
Version ^4.4.1
—
—
composer/installers
Version ^2.3
—
—
illuminate/contracts
Version ^11.0|^12.0
—
—

Weekly Downloads

Info

Last Published
2 days ago
Created
9 months ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform