Package Health

kojirock5260/laravel-openapi-probe

The package is well documented, tested, MIT-licensed, and has no install-time scripts. Its CI uses two unpinned actions, while the project is too new to demonstrate sustained maintenance or provide a security policy.

Latest v0.2.0PackagistPackagist

62%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

83

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Release historycaution

The package has only three releases, all published on its first day, so there is no meaningful release history or evidence of sustained maintenance yet.

Repo commit activitycaution

No commits or active maintainers were recorded in the prior three months. Because the package is only hours old, this primarily reflects limited history, but it still leaves maintenance capacity unproven.

Security policycaution

The repository has no security policy. This is a transparency and response-process gap for a package that exercises application requests, although it is not an abandonment signal by itself.

Version stabilitycaution

Version 0.2.0 is not a prerelease, but the 0.x major version indicates the API may still change substantially as the newly published project matures.

Workflow auditcaution

The single workflow was fully analyzed with no dangerous triggers or audit findings, but both of its action references are unpinned, leaving avoidable build-reproducibility and action-substitution exposure.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

kojirock5260

Direct Dependencies

DependencyLast ReleaseScore
symfony/yaml
Version ^7.0|^8.0
illuminate/http
Version ^12.0|^13.0
opis/json-schema
Version ^2.6
illuminate/console
Version ^12.0|^13.0
illuminate/routing
Version ^12.0|^13.0

Weekly Downloads

Info

Last Published
5 hours ago
Created
6 hours ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform