Package Health

scrumble-nl/laravel-model-ts-type

The package has tests, a clear README, a matching repository, and a recent release with Laravel 13 notes. Maintenance has paused recently, and the workflow uses four unpinned actions without a security policy. Pin this version if its current Laravel support is required.

Latest 10.7.0PackagistPackagist

68%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

75

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

94

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

63

Health Score Breakdown

Lifecycle scriptscaution

A post-autoload-dump script runs during Composer installation. This is a meaningful execution-time consideration, although the provided signals do not show that it is unusually risky.

Repo commit activitycaution

There were zero commits and zero active maintainers in the last three months. The recent release provides some compensating evidence, but the current pause lowers maintenance confidence.

Repo toolingcaution

Composer build tooling is present, but no security-scanning tools were detected. That is a transparency and maintenance gap, not evidence that the package is unsafe.

Security policycaution

The repository has no security policy, leaving reporting and response expectations undocumented for consumers.

Workflow auditcaution

The single workflow was fully analyzed with no detected sinks or audit findings, and it has no top-level write permissions. However, all four action references are unpinned, weakening build reproducibility and update safety.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Rico Clark
Luuk de Weijer

Direct Dependencies

DependencyLast ReleaseScore
laravel/helpers
Version ^1.6
—
—
laravel/framework
Version ^10.0|^11.0|^12.0|^13.0
—
—

Weekly Downloads

Info

Last Published
2 months ago
Created
5 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform