Package Health

larapack/hooks

The package has a clear MIT license, tests, a readable README, release notes, and a matching organization-owned repository. It has had no registry releases or repository commits since March 2020, with no security policy or scanning tools, so maintenance risk is significant.

Latest v1.0.12PackagistPackagist

58%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

67

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

88

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

83

Health Score Breakdown

Release historycaution

The package has made no releases in about 6 years, despite 13 releases earlier in its history. This strongly lowers confidence in ongoing maintenance, though the package is not deprecated.

Repo commit activitycaution

The repository recorded zero commits and zero active maintainers over the last three months, a strong sign that maintenance has stopped. Its non-archived status is only limited compensation because observed activity is absent.

Repo issue activitycaution

There have been no new or closed issues or pull requests in the last month, alongside six open issues and one open pull request. This is consistent with an inactive project and adds maintenance concern.

Repo toolingcaution

Composer build tooling is present, but no security scanning tools are configured. This is a transparency and maintenance-hygiene gap rather than evidence that the release is unsafe.

Security policycaution

The repository has no security policy, reducing transparency around vulnerability reporting and response. This matters more alongside the prolonged lack of maintenance activity.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Mark Topper

Direct Dependencies

DependencyLast ReleaseScore
composer/composer
Version >=1.4
—
—

Weekly Downloads

Info

Last Published
6 years ago
Created
9 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform