Package Health

borah/llm-monitoring-laravel

The package is well documented, has repository tests, and is backed by an organization. Maintenance has gone quiet for about 16 months, while all 8 workflow actions are unpinned and no security policy is present.

Latest 0.1.1PackagistPackagist

54%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

75

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Health Score Breakdown

Release historydanger

Only 2 releases exist, both published about 16 months ago, with no release in the last 12 months. This is meaningful evidence of stalled maintenance for a package still at version 0.1.1.

Repo commit activitydanger

The repository recorded 0 commits and 0 active maintainers during the last 3 months, consistent with the longer release gap and increasing abandonment risk.

Security policycaution

No repository security policy was found, leaving vulnerability reporting and response expectations undocumented. The repository's tests and build tooling provide some quality structure but do not replace this policy.

Version stabilitycaution

Version 0.1.1 is not a stable major release, which limits maturity evidence, although it is not marked as a prerelease.

Workflow auditcaution

The audit completed cleanly with no high-confidence findings or untrusted checkouts, but all 8 action references are unpinned and one workflow grants top-level write access. These are workflow hygiene and maintenance risks, not severe risks on their own.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Borah

Direct Dependencies

DependencyLast ReleaseScore
filament/filament
Version ^3.2
—
—
illuminate/contracts
Version ^10.0||^11.0
—
—
borah/llm-port-laravel
Version ^1.0.4
—
—
flowframe/laravel-trend
Version ^0.3.0
—
—
spatie/laravel-package-tools
Version ^1.16
—
—

Weekly Downloads

Info

Last Published
1 year ago
Created
1 year ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform