Package Health

robtrehy/laravel-application-settings

Clear documentation, tests, release notes, and a matching repository make this easy to evaluate and maintain. The long gap since the last release and three unpinned workflow actions add practical maintenance and build-integrity concerns.

Latest 4.0.0PackagistPackagist

70%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

67

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

88

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

83

Health Score Breakdown

Lifecycle scriptscaution

A post-autoload-dump install script is present. This adds installation behavior that should be understood by consumers, but the signal alone does not show unsafe or unusual execution.

Release historycaution

The package has 12 releases over roughly five years with a historical median interval of about 69 days, but no releases in the last 12 months; this indicates a meaningful maintenance slowdown.

Repo commit activitycaution

There were zero commits and zero active maintainers in the last three months, a direct sign of currently stalled development. The recent repository push partly offsets abandonment concerns but does not show ongoing code activity.

Repo issue activitycaution

There are no open issues and three open pull requests, but no issues or pull requests were merged in the last month; this offers limited evidence of active maintenance.

Repo toolingcaution

Composer build tooling is present, but no security scanning tools were detected. For a small PHP package this is a hygiene gap rather than a standalone dependency risk.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Rob Trehy

Direct Dependencies

DependencyLast ReleaseScore
laravel/framework
Version ^11.0|^12.0
—
—
orchestra/testbench
Version ^9.0|^10.2
—
—

Weekly Downloads

Info

Last Published
1 year ago
Created
5 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform