Package Health

fruivita/line-reader

The documented API, tests, MIT license, and security policy make the package easier to assess and maintain. However, it has had no new release since May 2022 and no recent commits, while its workflows use unpinned images and archived actions.

Latest v1.0.0PackagistPackagist

42%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

0

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

79

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Release historydanger

The package has only one release, published in May 2022, with no releases in the last 12 months. This is strong evidence of an unmaintained dependency for a Laravel library.

Repo commit activitydanger

The repository recorded zero commits and zero active maintainers in the last three months, consistent with the release history showing prolonged inactivity. The repository is not archived, but that does not offset the lack of observed maintenance.

Repo popularitycaution

The repository has zero stars, forks, and watchers. Popularity is only supporting evidence, but these values provide no community signal to compensate for the thin maintenance record.

Workflow auditcaution

All 14 action references are unpinned, and the audit found a high-confidence unpinned container image plus a medium-confidence use of an archived action. Workflows were fully analyzed and have no untrusted checkouts or script injection, but the release workflow hygiene remains a supply-chain concern.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Fábio Cassiano

Direct Dependencies

DependencyLast ReleaseScore
illuminate/support
Version ^9.11
—
—
illuminate/pagination
Version ^9.11
—
—
illuminate/collections
Version ^9.11
—
—

Weekly Downloads

Info

Last Published
4 years ago
Created
4 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform