Package Health

kitelab-dev/byl-laravel

The package includes tests, a changelog, and a clear MIT license. Its organization-backed repository has two active contributors, while all four workflow actions are unpinned.

Latest v0.1.3PackagistPackagist

78%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

79

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

83

Health Score Breakdown

Release historycaution

The package is 53 days old with three releases and a median interval of about 15 days, showing active early development but limited long-term history.

Repo toolingcaution

Composer build tooling is present, but no security-scanning tooling was detected. That is a modest assurance gap for a library handling payment-related integrations.

Security policycaution

The repository has no security policy. This is a transparency and issue-reporting gap, though it is not by itself evidence of abandonment.

Version stabilitycaution

Version v0.1.3 is not a stable-major release, so its API may change more readily than a mature 1.x package. It is not marked as a prerelease, which partly offsets that concern.

Workflow auditcaution

The single workflow was fully analyzed with no untrusted checkouts, injection findings, or write permissions, but all four referenced actions are unpinned. Pinning them would improve build reproducibility and reduce action-supply-chain exposure.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Kitelab

Direct Dependencies

DependencyLast ReleaseScore
illuminate/http
Version ^11.0|^12.0|^13.0
—
—
illuminate/support
Version ^11.0|^12.0|^13.0
—
—
guzzlehttp/promises
Version ^2.0
—
—
illuminate/contracts
Version ^11.0|^12.0|^13.0
—
—

Weekly Downloads

Info

Last Published
29 days ago
Created
2 months ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform