Package Health

codedor/filament-media-library

The repository is active, has seven recent contributors, tests, release notes, and a clear MIT license. Workflow checks need tightening, especially the high-confidence bot-condition finding and unpinned actions.

Latest v4.0.1PackagistPackagist

52%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

88

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Health Score Breakdown

Registry deprecationdanger

Packagist marks the entire package as abandoned and names wotz/filament-media-library as its replacement. This is the strongest adoption concern despite the current release and active source repository.

Security policycaution

The repository has no SECURITY.md or other stated security policy. This is a transparency gap for a package handling uploaded media, although it does not by itself show abandonment.

Workflow auditcaution

All five workflows were analyzed, but all 12 action references are unpinned, and three workflows grant top-level write access. The high-confidence bot-conditions finding in the Dependabot auto-merge workflow adds a concrete workflow-hygiene concern.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

DependencyLast ReleaseScore
spatie/image
Version ^3.0
filament/filament
Version ^5.0
livewire/livewire
Version ^4.0
illuminate/contracts
Version ^10.0|^11.0|^12.0
blade-ui-kit/blade-icons
Version ^1.5

Weekly Downloads

Info

Last Published
7 months ago
Created
3 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform