Package Health

novvor/identity-laravel

Usable with caveats: this is a new package with only 50 days of history and all recent repository work coming from one contributor. It is backed by an organization and has strong basic project hygiene, including tests, documentation, a license, security policy, and read-only CI permissions.

Latest v2.5.1PackagistPackagist

68%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

67

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

86

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

100

Health Score Breakdown

Release historycaution

The package is only 50 days old with four releases, so its long-term maintenance record is not yet established. The recent release activity is a positive sign, but it does not compensate fully for the limited history.

Repo bus factorcaution

One contributor made all seven recent commits, creating a real continuity risk. The organization-owned repository provides some capacity to hand maintenance off, but no second active contributor is evidenced.

Repo commit activitycaution

Seven commits were made in the last three months, showing recent maintenance. However, the activity is still limited for a security-sensitive integration package.

Repo toolingcaution

Composer build tooling is present, but no security scanning tools were detected. The missing scanning is a modest transparency and maintenance gap rather than evidence that the release is unsafe.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

DependencyLast ReleaseScore
illuminate/http
Version ^12.0|^13.0
illuminate/cache
Version ^12.0|^13.0
psr/simple-cache
Version ^3.0
guzzlehttp/guzzle
Version ^7.0
illuminate/session
Version ^12.0|^13.0

Weekly Downloads

Info

Last Published
1 month ago
Created
1 month ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform