Package Health

defstudio/filament-column-length-limiter

Usable with caveats: the release is licensed, documented, correctly backed by its repository, and has recent stable releases. Maintenance has paused over the last three months, and the workflows grant write access broadly, so review future updates before relying on it heavily.

Latest v5.0.0PackagistPackagist

72%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

75

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

100

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

80

Health Score Breakdown

Dangerous workflowscaution

One workflow uses pull_request_target for Dependabot auto-merge, which warrants review because that trigger can operate with elevated repository context; no untrusted checkout or script-injection findings were detected.

Maintainerscaution

Only one account has registry publish access, which is a resilience concern, but the repository is owned by an organization, making a short registry maintainer list less concerning.

Repo commit activitycaution

The repository recorded zero commits and zero active maintainers in the last three months, indicating a recent maintenance pause despite the recent release history and July push.

Token permissionscaution

All three analyzed workflows declare top-level write permissions, which broadens the impact of a workflow compromise and is weaker than least-privilege configuration.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Fabio Ivona

Direct Dependencies

DependencyLast ReleaseScore
filament/tables
Version ^5.0
—
—
filament/support
Version ^5.0
—
—
spatie/laravel-package-tools
Version ^1.93.0
—
—

Weekly Downloads

Info

Last Published
6 months ago
Created
1 year ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform