Package Health

sansanlabs/laravel-userstamps

Clear documentation, repository tests, and regular releases provide useful support for adoption. Maintenance is concentrated in one active contributor, while workflow permissions and unpinned actions add avoidable release-process risk.

Latest v8.2.0PackagistPackagist

67%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

83

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

100

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Health Score Breakdown

Repo bus factorcaution

One contributor made all 7 commits in the last 3 months. Organization backing provides some handoff capacity, but no second active contributor is shown, leaving maintenance resilience limited.

Security policycaution

No repository security policy was found. This is a transparency gap for reporting vulnerabilities, though it does not outweigh the package's active release history.

Workflow auditcaution

All five workflows were analyzed, but all 12 action references are unpinned and three workflows grant top-level write access. A high-confidence bot-condition finding also affects the Dependabot auto-merge workflow, adding avoidable CI supply-chain risk.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Edi Kurniawan

Direct Dependencies

DependencyLast ReleaseScore
illuminate/contracts
Version ^11.0 || ^12.0 || ^13.0
—
—
spatie/laravel-package-tools
Version ^1.92
—
—

Weekly Downloads

Info

Last Published
3 months ago
Created
1 year ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform