Package Health

jeffersongoncalves/filament-carve

The source project includes tests, a changelog, a security policy, and pinned workflow actions. One high-confidence workflow finding warrants care around its changelog automation.

Latest 3.0.0PackagistPackagist

68%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

75

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

94

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

88

Health Score Breakdown

Release historycaution

The package is newly published: all three releases occurred on the same day, so there is not yet enough history to demonstrate sustained maintenance.

Repo commit activitycaution

No commits or active maintainers were observed in the last three months. Because the package was released today, this is an early maintenance gap rather than proof of abandonment.

Workflow auditcaution

All four workflows were analyzed and all ten action references are pinned, but the audit found a high-confidence template-injection issue in update-changelog.yml; the single top-level write permission is only a mild concern without an untrusted trigger or checkout.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Jefferson Gonçalves

Direct Dependencies

DependencyLast ReleaseScore
filament/filament
Version ^5.0
—
—
spatie/laravel-package-tools
Version ^1.16
—
—
jeffersongoncalves/laravel-carve
Version ^1.0
—
—

Weekly Downloads

Info

Last Published
17 hours ago
Created
17 hours ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform