Package Health

beranidigital/laravel-model-audit

The project includes a usable README, repository tests, a license, and a security policy. Its sparse release history and no commits in the last three months make long-term maintenance less certain.

Latest 0.3PackagistPackagist

58%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

75

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

83

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Release historycaution

The package has only three releases across 811 days, with one release in the last 12 months and a median interval of about 371 days. This suggests a small, infrequently updated project, though it is not abandoned based on the recent release.

Repo commit activitycaution

There were no commits and no active maintainers in the last three months. Although a release was published recently and the repository was pushed earlier in the year, the current lack of development activity raises maintenance risk.

Version stabilitycaution

Version 0.3 is not a stable major release, which indicates limited maturity for a package with only three releases. It is not marked as a prerelease, so this is a modest concern rather than a severe one.

Workflow auditcaution

All five workflows were analyzed, but all 12 action references are unpinned and one high-confidence bot-conditions finding affects the Dependabot auto-merge workflow. The pull_request_target workflow has no untrusted checkout or script-injection sink, so this is workflow hygiene caution rather than a severe risk.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Yusuf Sekhan Althaf

Direct Dependencies

DependencyLast ReleaseScore
spatie/laravel-package-tools
Version ^1.15.0
—
—

Weekly Downloads

Info

Last Published
1 year ago
Created
2 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform