Package Health

orchid/platform

Clear licensing, documentation, and a matching source repository make the package easy to evaluate. Workflow references are all unpinned, which is a modest reproducibility concern.

Latest 14.53.0PackagistPackagist

86%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

100

Are you affected? Scan for Free

Health Score Breakdown

Workflow auditcaution

All six workflows were analyzed with no audit findings or untrusted-code sinks. However, all 25 action references are unpinned and one workflow grants top-level write permissions, creating a modest reproducibility and permission-hygiene concern.

Vulnerabilities

TitleVersionsSeverity
CVE-2024-51992
orchid/platform is vulnerable to Exposed Dangerous Method or Function in versions 8.0 - 14.43.0.
8.0 - 14.43.0
Medium
CVE-2023-36825
orchid/platform is vulnerable to Deserialization of Untrusted Data in versions 14.0.0-alpha4 - 14.5.0.
14.0.0-alpha4 - 14.5.0
Critical
CVE-2020-15263
orchid/platform is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in versions 9.0.0 - 9.4.4.
9.0.0 - 9.4.4
High

Package versions

Maintainers

Alexandr Chernyaev

Direct Dependencies

DependencyLast ReleaseScore
laravel/scout
Version ^9.0 || ^10.0 || ^11.0
watson/active
Version ^7.0
composer/semver
Version ^3.0
laravel/framework
Version ^10.0 || ^11.0 || ^12.0 || ^13.0
orchid/blade-icons
Version ^4.0

Weekly Downloads

Info

Last Published
6 months ago
Created
9 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform