Package Health

seffeng/laravel-rsa

This is a small, stable Laravel RSA package with a clear MIT license, a matching and recently pushed source repository, no registry deprecation, no install-time lifecycle scripts, and releases as recently as September 2026. However, its maturity and maintenance evidence are limited: the repository contains only eight files, has no tests, changelog, security policy, security scanning, or active commits in the last three months, and has very low adoption indicators. It may be usable, but developers should treat it as a lightly maintained dependency and review its cryptographic implementation and update responsiveness before relying on it for security-sensitive functionality.

Latest v1.0.2PackagistPackagist

68%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Dependencies
Dependencies
Evaluates the health and security of package dependencies

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

83

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

80

Health Score Breakdown

Dependency profilecaution

There are three runtime dependencies, including PHP and two package-specific libraries, with no development dependencies. The runtime dependency count is modest, but the absence of development dependencies also aligns with the lack of visible test infrastructure.

Maintainerscaution

Only one registry account has publish access. This is a concentration risk for continuity, though the matching source repository and recent release activity provide some compensation.

Package file treecaution

The artifact and repository each contain only eight files, consisting primarily of source, configuration, and documentation. This is consistent with a small package but provides limited evidence of engineering and validation depth.

Package scaffoldingcaution

The package includes a useful README and the repository uses GitHub Releases, but it has no tests or changelog. For a cryptographic integration package, the absence of repository tests is a meaningful maintenance and validation gap.

Project backingcaution

The repository is owned by an individual user rather than an organization, so continuity depends substantially on one project owner. The package and repository names align, providing useful identity consistency but not organizational redundancy.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

seffeng

Direct Dependencies

DependencyLast ReleaseScore
seffeng/cryptlib
Version >=0.1
seffeng/arr-helper
Version >=0.1.0

Weekly Downloads

Info

Last Published
19 days ago
Created
6 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform