Package Health

laravel/passport

A single contributor made both commits in the last three months, so continuity depends heavily on one person. Organization backing and a documented security process reduce that concern.

Latest v13.8.0PackagistPackagist

86%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

75

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

100

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

100

Are you affected? Scan for Free

Health Score Breakdown

Repo bus factorcaution

One contributor made all commits in the last three months, concentrating recent maintenance in a single person; organization ownership partly compensates for this risk.

Repo commit activitycaution

Only two commits were recorded in the last three months, which is modest activity for a maintained package but not evidence of abandonment given the recent release cadence.

Vulnerabilities

TitleVersionsSeverity
CVE-2026-39976
laravel/passport is vulnerable to Improper Authentication in versions 13.0.0 - 13.7.1.
13.0.0 - 13.7.1
High

Package versions

Maintainers

Taylor Otwell

Direct Dependencies

DependencyLast ReleaseScore
illuminate/auth
Version ^11.35|^12.0|^13.0
illuminate/http
Version ^11.35|^12.0|^13.0
symfony/console
Version ^7.1|^8.0
firebase/php-jwt
Version ^6.4|^7.0
illuminate/cookie
Version ^11.35|^12.0|^13.0

Weekly Downloads

Info

Last Published
23 days ago
Created
10 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform