Package Health

robodocxs/robodocxs-middleware-dtos

Usable with caveats: it is a stable, licensed package with regular releases, tests, and an active organizational owner. However, no commits or contributor activity were recorded in the last three months, and the repository lacks security scanning and a security policy.

Latest 2.5.0PackagistPackagist

68%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

75

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

89

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Health Score Breakdown

Repo commit activitycaution

No commits or active maintainers were recorded in the last three months. This is a meaningful maintenance concern, although the recent release history and non-archived repository provide some compensation.

Repo popularitycaution

The repository has no stars, forks, or watchers, limiting external evidence of adoption or community support; the organization-backed ownership and regular releases partly compensate.

Repo toolingcaution

Composer build tooling is present, but no security scanning tools were detected, leaving a modest transparency and maintenance gap.

Security policycaution

The repository has no security policy, so the process for reporting and handling vulnerabilities is unclear.

Token permissionscaution

The analyzed workflow lacks top-level token permissions and uses job-level permissions only. No write-enabled top-level permissions were found, so this is a minor workflow-hygiene concern rather than a severe risk.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Robodocxs

Direct Dependencies

DependencyLast ReleaseScore
nesbot/carbon
Version ^2.60 || ^3.0
spatie/laravel-data
Version ^4.17

Weekly Downloads

Info

Last Published
3 months ago
Created
1 year ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform