Package Health

laravelrus/sleepingowl

It has a clear MIT license, tests, changelog, release notes, and an active organization-backed repository. The small recent contributor base and absent security policy leave meaningful maintenance and security-process concerns.

Latest 10.48.29PackagistPackagist

68%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

75

Dependencies
Dependencies
Evaluates the health and security of package dependencies

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

88

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Dependency profilecaution

The package declares 11 runtime dependencies, including framework and integration components; this is a substantial dependency surface but not severe on its own.

Release historycaution

The package has 210 releases over more than 10 years, but none in the last 12 months; this suggests release maintenance has slowed despite the long history.

Repo bus factorcaution

All recent commit activity comes from one contributor, creating a high concentration risk; organization backing provides some ability to hand off maintenance but does not remove the concern.

Repo commit activitycaution

Only one commit was recorded in the last three months, indicating limited recent development activity even though the repository was pushed recently.

Repo toolingcaution

Composer is used for builds, but no security scanning tools were detected, leaving the project with limited automated security coverage.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Sleeping Owl
Pavel Buchnev
Dave Gabrielyan
TheArdent
Daan

Direct Dependencies

DependencyLast ReleaseScore
doctrine/dbal
Version >=2.3
—
—
erusev/parsedown
Version 1.*
—
—
laravel/framework
Version >=5.5
—
—
kodicms/laravel-assets
Version 0.*
—
—
kodicomponents/support
Version 0.*
—
—

Weekly Downloads

Info

Last Published
1 year ago
Created
11 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform