Package Health

dev-ibizinfo/laravelshoppingcart

The focused dependency set, clear documentation, tests, and release notes make the package understandable to adopt. Its short history, no commits in three months, absent security policy, and unpinned workflow actions leave meaningful maintenance and build-trust concerns.

Latest V1.1PackagistPackagist

58%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

33

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

81

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Repo commit activitydanger

There were zero commits and zero active maintainers in the last three months, a significant concern given the package's short history and recent latest release.

Maintainerscaution

One registry maintainer account is a limited publishing base for a user-owned project, leaving less visible redundancy if that maintainer becomes inactive.

Project backingcaution

The repository is owned by the same individual user as the registry namespace. This confirms ownership alignment but does not provide organizational backing or redundancy.

Release historycaution

The package is young at 167 days old with only two releases, although the releases were spaced about 3 days apart rather than showing a long maintenance record.

Repo popularitycaution

The repository has zero stars, forks, and watchers. Popularity is only supporting evidence, but this provides no external adoption signal for such a new package.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

dev-ibizinfo

Direct Dependencies

DependencyLast ReleaseScore
illuminate/support
Version ^13.0
—
—
illuminate/filesystem
Version ^13.0
—
—
illuminate/validation
Version ^13.0
—
—
illuminate/translation
Version ^13.0
—
—

Weekly Downloads

Info

Last Published
5 months ago
Created
5 months ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform