Package Health

gorilladash/laravel-website-sdk

The package has a clear README, MIT licensing, and no install-time scripts. Its small release history and unpinned CI actions leave modest maturity and workflow-hygiene gaps.

Latest v0.4.0PackagistPackagist

78%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

86

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Release historycaution

The package is only 91 days old with four releases, so its long-term maintenance record is still limited. Releases have arrived regularly, with a median interval of about 9 hours, which provides some evidence of active development.

Security policycaution

The repository has no published security policy, leaving reporting and response expectations unclear. This is a transparency gap, but the small, actively maintained project provides some compensating context.

Version stabilitycaution

Version v0.4.0 is not on a stable major release, so compatibility may still change as the package matures. It is not marked as a prerelease, which partly offsets that concern.

Workflow auditcaution

The sole workflow was fully analyzed with no untrusted checkouts, script injection, or audit findings. Both action references are unpinned, creating a modest reproducibility and supply-chain hygiene gap.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Anthony Gherghetta

Direct Dependencies

DependencyLast ReleaseScore
illuminate/http
Version ^11.0 || ^12.0 || ^13.0
—
—
illuminate/cache
Version ^11.0 || ^12.0 || ^13.0
—
—
illuminate/support
Version ^11.0 || ^12.0 || ^13.0
—
—
illuminate/contracts
Version ^11.0 || ^12.0 || ^13.0
—
—
gmostafa/php-graphql-client
Version ^1.14
—
—

Weekly Downloads

Info

Last Published
1 month ago
Created
3 months ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform