Package Health

ckryo/laravel_upload

The package is a tiny, minimally documented upload library with no tests, changelog, or security policy. Its source and registry have seen no release or push activity since July 2017, and the repository has no meaningful adoption signals. Pinning this version is preferable only when replacing it is impractical.

Latest 5.4.4PackagistPackagist

38%

Total Score

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

61

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Release historydanger

The latest release was about 9 years ago, with no releases in the last 12 months; this is strong evidence of abandonment for a package handling uploads.

Package scaffoldingcaution

A README is present but only 25 characters long, while the package and repository have no tests or changelog; the missing tests and changelog are normal packaging practice, but the extremely limited documentation is a transparency gap.

Repo package mentioncaution

The repository name matches the package, so this is not a repository-identity concern; the package name is simply absent from the README, which adds a minor documentation gap.

Repo popularitycaution

The repository has 0 stars and 0 forks, with only 1 watcher, providing no supporting evidence of adoption or community maintenance.

Repo toolingcaution

Composer is used for the build, but no security-scanning tooling is present; for an upload package, that leaves maintenance and security hygiene weaker than desirable.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

ckryo

Direct Dependencies

DependencyLast ReleaseScore
johnlui/aliyun-oss
Version ~2.0

Weekly Downloads

Info

Last Published
9 years ago
Created
9 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform