Package Health

m-tech-stack/laravel-ai-engine

Healthy and actively maintained, with a strong release cadence, extensive documentation, tests, a license, and recent repository activity. The main caveats are a concentrated two-person contributor base and limited repository security hardening, including no configured security scanner and no top-level workflow permissions.

Latest v3.6.2PackagistPackagist

82%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

70

Dependencies
Dependencies
Evaluates the health and security of package dependencies

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

94

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

90

Health Score Breakdown

Dependency profilecaution

The package declares 11 runtime dependencies spanning Laravel components, HTTP clients, AI providers, queues, and process execution. This is a meaningful integration surface but not, by itself, evidence of unhealthy maintenance.

Maintainerscaution

Only one registry account has publish access, which creates publishing continuity risk. However, repository activity shows a second active contributor, partially compensating for the thin registry maintainer list.

Project backingcaution

The repository is owned by an individual rather than an organization, so the two-contributor base and concentrated commit share represent genuine continuity risk rather than organization-backed handoff capacity.

Repo bus factorcaution

Two contributors were active, but the leading contributor made about 76% of the 101 recent commits. The second contributor remains active, so this is a concentration concern rather than severe abandonment risk.

Repo toolingcaution

Composer build tooling is present, but no repository security scanning tools were detected. That leaves a supply-chain hygiene gap, partially offset by the repository's security policy and clean workflow-risk findings.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Mohamed Abou Hagar

Direct Dependencies

DependencyLast ReleaseScore
guzzlehttp/psr7
Version ^2.12.3
—
—
illuminate/http
Version ^8.0|^9.0|^10.0|^11.0|^12.0|^13.0
—
—
symfony/process
Version ^5.4|^6.0|^7.0
—
—
illuminate/cache
Version ^8.0|^9.0|^10.0|^11.0|^12.0|^13.0
—
—
illuminate/queue
Version ^8.0|^9.0|^10.0|^11.0|^12.0|^13.0
—
—

Weekly Downloads

Info

Last Published
8 days ago
Created
10 months ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform