Package Health

metafroliclabs/laravel-kit

There is no security policy or security scanning, and installation runs four lifecycle scripts. A repository-backed README and tests help, but the small project shows limited ongoing activity.

Latest v1.1.1PackagistPackagist

57%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

75

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

83

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

67

Health Score Breakdown

Lifecycle scriptscaution

Four install and update lifecycle scripts run during Composer operations, increasing installation complexity and the amount of package code executed automatically. This is a meaningful supply-chain hygiene concern for a project template.

Release historycaution

The package has six releases over about 16 months, but none in the last 12 months, indicating that maintenance may have stopped. Its earlier roughly 18-day median release interval provides some evidence of prior activity.

Repo commit activitycaution

There were no commits and no active maintainers in the last three months, which is strong evidence of currently limited maintenance activity.

Repo popularitycaution

The repository has zero stars, forks, and watchers. Popularity is only supporting evidence, so this modestly reduces confidence in project maturity rather than determining the verdict.

Repo toolingcaution

Composer is used as the build tool, but no security scanning tools are configured. The missing scanning is a transparency and maintenance gap, not proof of an unsafe release.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

DependencyLast ReleaseScore
laravel/tinker
Version ^2.8
—
—
laravel/sanctum
Version ^3.3
—
—
guzzlehttp/guzzle
Version ^7.2
—
—
laravel/framework
Version ^10.10
—
—
stripe/stripe-php
Version ^14.8
—
—

Weekly Downloads

Info

Last Published
1 year ago
Created
1 year ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform