Package Health

msonowal/laracart

It has a clear README, a matching source repository, and a declared MIT license. The Laravel 5 target and lack of tests leave little evidence that newer projects will be supported.

Latest v0.0.14PackagistPackagist

42%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

0

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

71

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Health Score Breakdown

Release historydanger

The latest release was published in January 2019, and there have been no releases in roughly 7 years and 8 months. This is strong evidence of abandonment for a framework integration package.

Repo commit activitydanger

The repository recorded 0 commits and 0 active maintainers in the last 3 months, consistent with the long release gap. No newer activity compensates for the maintenance concern.

Repo toolingcaution

The repository uses Composer, but no security scanning tools were detected. This is a modest transparency and maintenance gap, not a standalone adoption blocker.

Security policycaution

No security policy was detected in the repository. For an inactive package, the absence of a documented vulnerability-reporting path adds a small maintenance concern.

Version stabilitycaution

The assessed version is not a stable major release, although it is not marked as a prerelease. The 0.0.x version adds maturity uncertainty to an already inactive project.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Manash Jyoti Sonowal

Direct Dependencies

DependencyLast ReleaseScore
illuminate/cookie
Version 5.1.*|5.2.*|5.3.*|5.4.*|5.5.*|5.6.*|5.7.*
—
—
illuminate/session
Version 5.1.*|5.2.*|5.3.*|5.4.*|5.5.*|5.6.*|5.7.*
—
—
illuminate/support
Version 5.1.*|5.2.*|5.3.*|5.4.*|5.5.*|5.6.*|5.7.*
—
—

Weekly Downloads

Info

Last Published
7 years ago
Created
9 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform