Package Health

metrial/laravel-rbac

The project is about four months old, and all three recent commits come from one contributor. It includes tests, a substantial README, a license, and security scanning, but its workflow dependencies are not pinned.

Latest v1.0.0PackagistPackagist

62%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

93

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Health Score Breakdown

Release historycaution

This is a young package, about four months old, with only one release and no established release interval. That limits evidence of maturity and sustained maintenance.

Repo bus factorcaution

One contributor made all three commits in the last three months. With a user-owned repository rather than organization backing, this creates a meaningful continuity risk.

Repo commit activitycaution

There were three commits in the last three months, showing some recent activity, but the volume is modest for a package intended for production authorization use.

Security policycaution

The repository has no security policy. For an authorization package, that reduces transparency about how security issues should be reported and handled.

Workflow auditcaution

The single workflow was fully analyzed with no reported audit findings or untrusted execution paths. However, all four action references are unpinned, leaving routine build inputs less reproducible.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Karem Metrial

Direct Dependencies

DependencyLast ReleaseScore
illuminate/auth
Version ^10.0|^11.0|^12.0|^13.0
—
—
illuminate/cache
Version ^10.0|^11.0|^12.0|^13.0
—
—
illuminate/support
Version ^10.0|^11.0|^12.0|^13.0
—
—
illuminate/database
Version ^10.0|^11.0|^12.0|^13.0
—
—

Weekly Downloads

Info

Last Published
3 months ago
Created
3 months ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform