Package Health

quansitech/cmf-module-roles

This is a usable but very new package with organizational backing and a repository that clearly matches the package. It is not deprecated or archived, has a stable v1.0.2 release, uses no install-time scripts, and has a small, understandable dependency profile. However, it was first released only hours ago, has no observed commit activity or contributor activity in the measured period, has no tests, changelog, security policy, or security scanning, and declares a proprietary license without a license file. The README explains that this repository is an automatically generated monorepo split, which makes the missing direct development activity and tests less concerning than they would be for a standalone project, but the package still has limited demonstrated maturity and transparency.

Latest v1.0.2PackagistPackagist

62%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

67

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

72

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

88

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

DependencyLast ReleaseScore
quansitech/cmf-core
Version ^1.0
spatie/laravel-permission
Version ^8.0
bezhansalleh/filament-shield
Version ^4.0
quansitech/cmf-module-auditing
Version ^1.0

Weekly Downloads

Info

Last Published
2 hours ago
Created
9 hours ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform