Package Health

jamesgifford/laravel-blog

Risky to adopt: this is an unreleased alpha package with no updates since March 2017 and no active maintainers visible in recent activity. The repository is not archived and the code is licensed, but the long abandonment gap makes it unsuitable for a new dependency.

Latest v0.1-alphaPackagistPackagist

32%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

0

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

57

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Release historydanger

The package has only one release, published about 9 years ago, with no releases in the last 12 months. That is strong evidence of abandonment for a framework integration.

Repo commit activitydanger

The repository has had zero commits and zero active maintainers in the last 3 months, consistent with the last push being about 9 years ago. This substantially raises maintenance and compatibility risk.

Version stabilitydanger

The only release is v0.1-alpha, and its release notes explicitly say the project is still in development and not recommended for production use. No stable release compensates for this warning.

Package scaffoldingcaution

The package includes a README and release notes, but it has no tests or changelog. Missing tests are a meaningful gap for a Laravel library, although the release notes provide some documentation of its initial state.

Repo popularitycaution

The repository has 1 star, 0 forks, and 1 watcher, providing little evidence of community use or review. Low popularity alone is not disqualifying, but it offers no offset to the severe maintenance concerns.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

James Gifford

Direct Dependencies

DependencyLast ReleaseScore
illuminate/support
Version 5.*
—
—

Weekly Downloads

Info

Last Published
9 years ago
Created
9 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform