Package Health

php-flasher/flasher-toastr-laravel

The project is licensed, documented, and maintained under an organization with a recent release. Recent work comes from one contributor, and its only workflow uses an unpinned action, so maintenance and build reproducibility deserve attention.

Latest v2.6.3PackagistPackagist

80%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

67

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

100

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

83

Health Score Breakdown

Repo bus factorcaution

One contributor made all two recent commits, concentrating short-term maintenance responsibility. Organization ownership provides some handoff capacity, but no second active contributor is shown.

Repo commit activitycaution

Only two commits were recorded in the last three months, which indicates light recent development even though the package has released recently.

Workflow auditcaution

The sole workflow uses a pull_request_target trigger without an untrusted checkout or script-injection sink, but its one action reference is unpinned, weakening build reproducibility.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Younes ENNAJI

Direct Dependencies

DependencyLast ReleaseScore
php-flasher/flasher-toastr
Version ^2.6.3
—
—
php-flasher/flasher-laravel
Version ^2.6.3
—
—

Weekly Downloads

Info

Last Published
1 month ago
Created
5 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform