Package Health

lumensistemas/lgpd-laravel

The package includes tests in its repository, release notes, a matching source project, and an MIT license. Maintenance is still uncertain because it has only one release and no commits from any active maintainer in the last three months; workflow weaknesses add adoption risk.

Latest 1.0.0PackagistPackagist

58%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

75

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

88

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Health Score Breakdown

Release historycaution

This is a 173-day-old package with only one release, so there is little release history from which to judge sustained maintenance.

Repo commit activitycaution

The repository recorded zero commits and zero active maintainers during the last three months, a meaningful sign of currently inactive development.

Repo popularitycaution

The repository has one star, no forks, and no watchers. Popularity is only supporting evidence, but these figures provide little external evidence of maturity or broad adoption.

Security policycaution

The repository has no security policy, leaving vulnerability-reporting expectations undocumented for a package that handles personal-data and compliance features.

Workflow auditcaution

All 10 action references are unpinned, and the audit found a high-confidence bot-condition issue in a Dependabot auto-merge workflow; top-level write permissions also appear in two workflows, although no untrusted checkout or script-injection sink was found.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Lucas Vasconcelos

Direct Dependencies

DependencyLast ReleaseScore
illuminate/support
Version ^12.0
lumensistemas/encryption-laravel
Version ^1.0

Weekly Downloads

Info

Last Published
5 months ago
Created
5 months ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform