Package Health

rylxes/laravel-gdpr

The repository has had no commits for six months, and the project has little adoption or issue activity. Licensing, documentation, tests, release notes, and repository alignment are solid, but all five workflow actions are unpinned and there is no security policy.

Latest v1.0.1PackagistPackagist

62%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

89

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Release historycaution

Only two releases have been published, both on the same day about six months ago, so there is limited evidence of sustained release maintenance. The short history also means abandonment is not yet conclusive.

Repo commit activitycaution

The repository recorded 0 commits and 0 active maintainers in the past three months, despite the package being used for data handling and compliance workflows. This is a meaningful maintenance concern, though the project is still relatively young.

Repo popularitycaution

The repository has 0 stars and 0 forks, with only 1 watcher, providing little supporting evidence of community use or external review. Low popularity alone does not make a small, otherwise maintained package unhealthy.

Security policycaution

No security policy is present in the repository. For a package handling exports, erasure, consent records, and audit data, this reduces transparency around vulnerability reporting.

Workflow auditcaution

All 5 referenced actions are unpinned, and the release workflow grants top-level write permissions; no dangerous trigger or audit finding was detected. The workflow is complete and has no untrusted checkout or script-injection findings, so this is a hygiene caution rather than a severe risk.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Sherriff Agboola

Direct Dependencies

DependencyLast ReleaseScore
illuminate/http
Version ^10.0|^11.0|^12.0
—
—
illuminate/mail
Version ^10.0|^11.0|^12.0
—
—
illuminate/queue
Version ^10.0|^11.0|^12.0
—
—
illuminate/events
Version ^10.0|^11.0|^12.0
—
—
illuminate/console
Version ^10.0|^11.0|^12.0
—
—

Weekly Downloads

Info

Last Published
6 months ago
Created
6 months ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform