Package Health

spatie/wordpress-ray

The package is licensed, documented, tested in its repository, and has release notes for this version. Organization backing and a recent repository push support continued maintenance.

Latest 1.7.11PackagistPackagist

70%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

67

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

94

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Repo bus factorcaution

One contributor made all commits in the last three months, concentrating maintenance responsibility in a single person. Organization ownership helps provide backing, but no second active contributor is shown.

Repo commit activitycaution

Only one commit was recorded in the last three months, indicating limited recent development activity. The recent release and repository push provide some compensating evidence.

Repo toolingcaution

Composer build tooling is present, but no security-scanning tool was detected. This is a modest transparency and maintenance gap rather than evidence of unsafe code.

Security policycaution

The repository has no security policy, leaving vulnerability-reporting expectations less clear for users and maintainers.

Workflow auditcaution

Both workflows were analyzed without untrusted triggers or script injection, but all five action references are unpinned and one archived action was found with high confidence. These are workflow supply-chain hygiene concerns, not a standalone severe risk.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Freek Van der Herten

Direct Dependencies

DependencyLast ReleaseScore
spatie/ray
Version ^1.44.1
ramsey/uuid
Version ^4.9.1
spatie/backtrace
Version ^1.8.1
automattic/jetpack-autoloader
Version ^2.12

Weekly Downloads

Info

Last Published
6 months ago
Created
5 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform