Package Health

groupesti/laravel-license

Usable with caveats: it has clear documentation, tests, licensing, and recent activity from an organization-backed repository. However, it is only 53 days old, has just three releases, and lacks a security policy and automated security scanning.

Latest 1.1.0PackagistPackagist

72%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

83

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

88

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Release historycaution

The package is only 53 days old and all three releases occurred within a very short period, leaving limited evidence of long-term maintenance and release stability.

Repo bus factorcaution

Commit activity is evenly split between two contributors, reducing single-person concentration; the small contributor base still limits resilience if either stops contributing.

Repo toolingcaution

Composer build tooling is present, but no security scanning tools are configured, leaving a transparency and maintenance gap for a package that handles signed license tokens.

Security policycaution

The repository has no security policy, so users are given no documented process for reporting or handling vulnerabilities in a package that exposes authentication-related licensing features.

Token permissionscaution

The repository workflow lacks top-level GitHub Actions permissions, so its token scope is not explicitly constrained; this is a workflow-hardening gap, though no write permissions were observed.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Richard Simard

Direct Dependencies

DependencyLast ReleaseScore
ramsey/uuid
Version ^4.7
—
—
illuminate/http
Version ^11.0 || ^12.0 || ^13.0
—
—
illuminate/console
Version ^11.0 || ^12.0 || ^13.0
—
—
illuminate/routing
Version ^11.0 || ^12.0 || ^13.0
—
—
illuminate/support
Version ^11.0 || ^12.0 || ^13.0
—
—

Weekly Downloads

Info

Last Published
2 months ago
Created
2 months ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform