Package Health

glesys/butler-audit

Usable with caveats: the repository is active, tested, licensed, and backed by an organization, but the registry has had no release in over a year and recent work is concentrated in one contributor. CI also lacks explicit token permissions and a security policy.

Latest v0.8.1PackagistPackagist

72%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

88

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

94

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

67

Health Score Breakdown

Release historycaution

The package has 15 releases since November 2020 with a historical median interval of about 48 days, but it has had no registry release in the last 12 months; the latest release was in May 2025.

Repo bus factorcaution

All five recent commits came from one contributor, creating concentration risk; the organization-owned repository provides some ability to hand maintenance to another contributor.

Security policycaution

The repository has no security policy, leaving vulnerability-reporting and response expectations undocumented.

Token permissionscaution

The only workflow lacks top-level token permissions, so its CI access is less explicitly restricted than it could be.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

DependencyLast ReleaseScore
illuminate/bus
Version ^11.0 | ^12.0
—
—
illuminate/log
Version ^11.0 | ^12.0
—
—
illuminate/http
Version ^11.0 | ^12.0
—
—
illuminate/queue
Version ^11.0 | ^12.0
—
—
guzzlehttp/guzzle
Version ^7.8.1
—
—

Weekly Downloads

Info

Last Published
1 year ago
Created
5 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform