Package Health

simonecerruti/laravel-translation-audit

The repository includes tests, a changelog, a security policy, dependency scanning, and a correctly licensed package. Its install-time script and broad workflow permission need attention as the project matures.

Latest v0.1.0PackagistPackagist

68%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

75

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

86

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

67

Health Score Breakdown

Lifecycle scriptscaution

A post-autoload-dump install-time script runs during Composer operations, adding execution surface for consumers even though the signal gives no evidence of harmful behavior.

Maintainerscaution

Only one registry publishing account is present, limiting visible publishing redundancy; the repository is also maintained by a single user rather than an organization.

Release historycaution

This is the first release, published today, so there is no release history or cadence demonstrating sustained maintenance yet.

Version stabilitycaution

Version 0.1.0 is not a stable major release, which indicates an early API and maintenance stage despite not being marked as a prerelease.

Workflow auditcaution

Both workflows were fully analyzed with no audit findings, all five action references pinned, and one workflow using read-only permissions. One workflow has top-level write permissions, a mild hygiene concern.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

SimoneCerruti

Direct Dependencies

DependencyLast ReleaseScore
symfony/finder
Version ^7.4.19||^8.1.7
—
—
nikic/php-parser
Version ^5.9
—
—
illuminate/support
Version ^12.0||^13.0
—
—
thecodingmachine/safe
Version ^3.4
—
—

Weekly Downloads

Info

Last Published
1 hour ago
Created
1 hour ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform