Package Health

fabricate/pipeline

The MIT license, clean install metadata, and organization ownership provide a useful baseline. Its two-release history offers limited evidence of long-term stability, while the small source tree leaves little validation context.

Latest v0.7.0PackagistPackagist

58%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

67

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

75

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Package scaffoldingcaution

The package has no README, tests, or changelog. Missing tests and changelog are normal for published artifacts, but the absent README reduces consumer guidance for this library.

Release historycaution

Only two releases have appeared over 53 days, with about 10 days between releases. That shows recent publishing activity but not enough history to establish mature maintenance.

Repo bus factorcaution

All three recent commits came from one contributor. Organization ownership offers some handoff capacity, but no second active contributor is shown to reduce the immediate concentration risk.

Repo commit activitycaution

The repository recorded three commits in the last three months, so there is some recent activity, but the low volume provides limited evidence of sustained maintenance.

Repo toolingcaution

Composer is used for builds, but no security-scanning tooling is present. For a dependency package, that is a meaningful hygiene gap, though not evidence of a defect by itself.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Angel Gonzalez
Taylor Otwell

Direct Dependencies

DependencyLast ReleaseScore
fabricate/chassis
Version ^0.7.0
—
—
fabricate/contracts
Version ^0.7.0
—
—
fabricate/macroable
Version ^0.7.0
—
—
fabricate/conditionable
Version ^0.7.0
—
—
fabricate/nuts-and-bolts
Version ^0.7.0
—
—

Weekly Downloads

Info

Last Published
1 month ago
Created
2 months ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform