Package Health

goldnead/statamic-inbox

The project includes tests, a changelog, release notes, and a matching repository. Its very recent history, zero three-month commit activity, absent security policy, and fully unpinned workflow actions leave meaningful adoption risk.

Latest v0.2.1PackagistPackagist

58%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

80

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

67

Health Score Breakdown

Release historycaution

The package is 0 days old with four releases published within hours, so there is not yet evidence of sustained maintenance or a settled release process.

Repo commit activitycaution

The repository reports zero commits and zero active maintainers in the last three months; because the project is newly published, this is partly explained by its age but still provides no established maintenance evidence.

Security policycaution

The repository has no security policy, leaving vulnerability reporting and response expectations undocumented for a package that handles mailbox credentials and email data.

Version stabilitycaution

Version v0.2.1 is not a stable major release, indicating an early API and behavior stage despite not being marked prerelease.

Workflow auditcaution

All 12 workflow action references are unpinned, which weakens build reproducibility; the workflow is otherwise fully analyzed, uses read-only permissions, and has no detected high-confidence dangerous findings.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Adrian Goldner

Direct Dependencies

DependencyLast ReleaseScore
statamic/cms
Version ^6.0
—
—
laravel/framework
Version ^12.40|^13.0
—
—
symfony/html-sanitizer
Version ^7.1|^8.0
—
—
directorytree/imapengine
Version ^1.25
—
—
zbateson/mail-mime-parser
Version ^3.0
—
—

Weekly Downloads

Info

Last Published
17 hours ago
Created
22 hours ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform