Package Health

mr-punyapal/laravel-extended-relationships

It has a clear MIT license, release notes, repository tests, and five releases in the past year. The single-contributor pattern, absent security policy, and unpinned workflow actions leave meaningful maintenance and build-hygiene concerns.

Latest 3.0.0PackagistPackagist

72%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

100

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Health Score Breakdown

Repo bus factorcaution

One contributor made 100% of the recent commits, creating a concentrated bus factor for a user-owned project without organizational backing.

Repo commit activitycaution

Ten commits were made in the last three months, but all came from one active maintainer, limiting evidence of sustained maintenance capacity.

Security policycaution

The repository has no security policy, reducing transparency about how vulnerabilities should be reported and handled.

Workflow auditcaution

All five analyzed action references are unpinned, and one workflow grants top-level write permissions; the audit found no untrusted checkout or script-injection path, so this is build hygiene rather than a severe risk.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Punyapal Shah

Direct Dependencies

DependencyLast ReleaseScore
illuminate/contracts
Version ^12.0|^13.0
—
—

Weekly Downloads

Info

Last Published
1 month ago
Created
3 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform