Package Health

cslash/laravel-sharedsync

This is a usable and reasonably transparent young package: it has an MIT license, a complete README, repository and artifact tests, no install-time lifecycle scripts, active recent commits, and no deprecation or archival status. The main concerns are limited maturity and resilience: the package is only 136 days old, remains on major version 0, all 14 recent commits come from one contributor, the repository has no security scanning or security policy, and it has no observed community activity or adoption signals. Organization ownership provides some maintenance backing, but the single active contributor and limited project history justify caution before relying on it for critical deployments.

Latest 0.4.0PackagistPackagist

72%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

60

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

78

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

90

Health Score Breakdown

Maintainerscaution

Only one registry account has publish access, which is a resilience concern, although the linked repository is owned by an organization and registry access lists do not by themselves establish abandonment.

Release historycaution

The package is young at 136 days with 12 releases, including 11 in the last 12 months, indicating active iteration but limited long-term maintenance evidence. The median release interval of about 32 minutes also suggests release bursts rather than an established cadence.

Repo bus factorcaution

All recent commits come from one contributor, creating a single-person continuity risk. Organization ownership provides some ability to hand off maintenance, but no second active contributor is observed.

Repo commit activitycaution

Fourteen commits were made in the last three months by one active maintainer, demonstrating current development but not yet a broad or durable maintenance base.

Repo issue activitycaution

There are no open issues or pull requests and no recent issue or pull-request activity. This may reflect a small or new project, but it provides little evidence of community validation or support.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Ciro Scognamiglio

Direct Dependencies

DependencyLast ReleaseScore
illuminate/http
Version ^10.0|^11.0|^12.0
—
—
symfony/process
Version ^6.0|^7.0
—
—
illuminate/console
Version ^10.0|^11.0|^12.0
—
—
illuminate/support
Version ^10.0|^11.0|^12.0
—
—
phpseclib/phpseclib
Version ^3.0
—
—

Weekly Downloads

Info

Last Published
27 days ago
Created
5 months ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform