Package Health

focalcrm/filament

The MIT license, matching repository, and organization ownership provide useful transparency. The repository includes tests, but security policy is absent and sustained maintenance is not yet demonstrated. Pin v0.2.3 until a longer release and commit history is available.

Latest v0.2.3PackagistPackagist

58%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

83

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

79

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Health Score Breakdown

Release historycaution

The package is less than one day old with five releases in roughly three hours and a median interval of about 39 minutes. This shows active initial publishing but provides no long-term maintenance evidence.

Repo commit activitycaution

There were zero commits and zero active maintainers in the last three months. Because the package and repository are less than one day old and were pushed recently, this is not abandonment evidence yet, but sustained maintenance remains unproven.

Repo toolingcaution

The repository uses Composer build tooling, but no security scanning tools are reported. That is a modest transparency and maintenance gap for a new package.

Security policycaution

No security policy is present in the repository. This does not make the package unsafe, but it weakens disclosure and maintenance transparency.

Version stabilitycaution

Version v0.2.3 is not a stable major release, so its compatibility and maturity are not yet established. It is not marked as a prerelease, which is a small compensating signal.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

CaskStack, LLC

Direct Dependencies

DependencyLast ReleaseScore
focalcrm/core
Version self.version
—
—
filament/filament
Version ^5.9
—
—
laravel/framework
Version ^12.0 || ^13.0
—
—

Weekly Downloads

Info

Last Published
2 hours ago
Created
3 hours ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform