Package Health

cleaniquecoders/laravel-config-webhook

Define, sign, dispatch and log outgoing webhooks in Laravel with retries, HMAC signatures, and an optional Livewire + Flux admin UI.

Latest 1.0.1PackagistPackagist

68%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

75

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

94

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

63

Health Score Breakdown

Dangerous workflowscaution

Five workflows were analyzed with one pull_request_target workflow for Dependabot automation, but no untrusted checkouts or script-injection patterns were detected; the special workflow still warrants review before relying on the project’s automation.

Release historycaution

Only two releases were published over about 100 days, with both arriving within roughly 17 hours; this is a young project with limited evidence of a sustained release pattern.

Repo commit activitycaution

The repository recorded zero commits and zero active maintainers over the last three months. For a package this new, that is a meaningful maintenance concern, even though the repository is not archived.

Security policycaution

The repository has no published security policy, leaving vulnerability-reporting and response expectations unclear for a package that handles outgoing webhook credentials and delivery behavior.

Token permissionscaution

Three workflows request top-level write permissions and two omit top-level permissions entirely, indicating weaker-than-ideal CI permission hygiene.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Nasrul Hazim Bin Mohamad

Direct Dependencies

DependencyLast ReleaseScore
illuminate/contracts
Version ^12.0||^13.0
—
—
spatie/laravel-package-tools
Version ^1.16
—
—

Weekly Downloads

Info

Last Published
4 months ago
Created
4 months ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform