Package Health

kraenkvisuell/nova-cms-portfolio

The MIT license, active repository, and strong release cadence support continued maintenance. A single active contributor and no security policy leave limited independent oversight.

Latest v1.70.0PackagistPackagist

65%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

67

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

88

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

83

Health Score Breakdown

Package scaffoldingcaution

The package includes a README and tests, and the exact version has a GitHub release. However, its README explicitly says it is still under construction and not ready for use, which is a meaningful adoption concern.

Repo bus factorcaution

All 3 recent commits came from one contributor, concentrating maintenance responsibility. Organization ownership provides some handoff capacity, but no second active contributor is shown.

Repo commit activitycaution

The repository recorded 3 commits in the last 3 months, showing some recent activity, but the volume is modest for an actively evolving package.

Repo package mentioncaution

The repository name matches the package, reducing the risk of an unrelated repository being used. The README does not mention the package, so repository-package linkage is slightly less transparent.

Security policycaution

The repository has no published security policy, leaving no documented process for reporting or handling vulnerabilities.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

DependencyLast ReleaseScore
manogi/nova-tiptap
Version ^2.0
—
—
spatie/laravel-tags
Version ^4.3
—
—
spatie/nova-tags-field
Version ^3.4
—
—
joshmoreno/nova-html-field
Version ^0.1.0
—
—
owenmelbz/nova-radio-field
Version ^1.0
—
—

Weekly Downloads

Info

Last Published
1 month ago
Created
5 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform