Package Health

kanekescom/laravel-siasn-simpeg-api

Clear licensing, extensive documentation, release notes, and a matching repository support adoption. The automated workflows have broad permissions, unpinned actions, and one high-confidence bot-condition finding, so updates and publishing deserve extra scrutiny.

Latest v2.3.2PackagistPackagist

55%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

75

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

93

Health Score Breakdown

Release historycaution

The package has 21 releases since September 2023, but none in the last 12 months and the latest release was over two years ago. This materially increases abandonment and compatibility risk.

Repo commit activitycaution

The repository recorded zero commits and zero active maintainers in the last three months, consistent with the long release gap. No provided activity signal compensates for this slowdown.

Workflow auditcaution

All 14 action references are unpinned, three workflows grant top-level write permissions, and the audit found a high-confidence bot-condition issue in the Dependabot auto-merge workflow. The pull request target trigger has no untrusted checkout or script-injection sink, limiting the impact to caution rather than danger.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Achmad Hadi Kurnia

Direct Dependencies

DependencyLast ReleaseScore
guzzlehttp/guzzle
Version ^7.2
—
—
illuminate/contracts
Version ^10.0|^11.0
—
—
kanekescom/laravel-helperia
Version ^2.0
—
—
kanekescom/laravel-siasn-api
Version ^2.0
—
—
spatie/laravel-package-tools
Version ^1.14.0
—
—

Weekly Downloads

Info

Last Published
2 years ago
Created
3 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform