Package Health

benjaminhansen/filament-range-field

The package includes a real README, tests in the repository, a changelog, and Dependabot scanning. Its single release was followed by about 20 months without commits, while high-confidence workflow findings weaken release-process trust.

Latest v0.0.1PackagistPackagist

48%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

38

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

81

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

83

Health Score Breakdown

Release historydanger

Only one release exists, published about 20 months ago, with no releases in the last 12 months; this is substantial evidence of limited maintenance.

Repo commit activitydanger

The repository had zero commits and zero active maintainers in the last three months, reinforcing the abandonment concern shown by the release history.

Workflow auditdanger

The audit completed all five workflows but found high-confidence bot-condition issues and an unpinned container image; all 11 action references are unpinned, and one workflow grants top-level write access.

Maintainerscaution

One registry maintainer is consistent with a small user-owned project, but it leaves little visible publishing redundancy when combined with the lack of recent releases.

Project backingcaution

The registry namespace and repository belong to the same individual account, so there is no organizational backing shown to compensate for the thin maintainer base.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Omar Yepez

Direct Dependencies

DependencyLast ReleaseScore
filament/filament
Version ^3.0
—
—
illuminate/contracts
Version ^8.0|^9.0|^10.0|^11.0
—
—
spatie/laravel-package-tools
Version ^1.9.2
—
—

Weekly Downloads

Info

Last Published
1 year ago
Created
1 year ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform