Package Health

solution-forest/inspirecms-support

The project shows strong release coverage, clear upgrade notes, licensing, tests, and security documentation. Its recent commit count is zero, while workflow checks report high-confidence issues and every action reference is unpinned.

Latest 5.0.0PackagistPackagist

58%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

75

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

100

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

67

Health Score Breakdown

Lifecycle scriptscaution

The package runs a post-autoload-dump install-time script, which adds execution surface during Composer installation and warrants caution even though no harmful behavior is shown here.

Repo commit activitycaution

The repository recorded zero commits and zero active maintainers in the last three months, a meaningful sign that maintenance may have recently stalled despite the broader release history.

Workflow auditcaution

All 11 action references are unpinned, four workflows grant top-level write permissions, and high-confidence bot-condition and template-injection findings were reported. The pull_request_target workflow has no untrusted checkout, so these are workflow hygiene concerns rather than a standalone severe risk.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

carly

Direct Dependencies

DependencyLast ReleaseScore
kalnoy/nestedset
Version ^6.0|^7.0
—
—
filament/filament
Version ^5.0
—
—
laravel/framework
Version ^11.0|^12.0|^13.0
—
—
php-ffmpeg/php-ffmpeg
Version ^1.2
—
—
spatie/eloquent-sortable
Version ^5.0
—
—

Weekly Downloads

Info

Last Published
5 months ago
Created
1 year ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform