Package Health

stephenjude/filament-jetstream

The MIT license, detailed README, repository tests, changelog, and release notes support adoption and maintenance transparency. Recent commit activity is absent, while workflow checks flag a high-confidence bot-condition issue and all 12 actions are unpinned.

Latest 2.0.1PackagistPackagist

68%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

100

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

100

Health Score Breakdown

Repo commit activitycaution

The repository recorded zero commits and zero active maintainers in the last 3 months. The strong release history partly offsets this, but the current lack of observed source activity is a maintenance concern.

Workflow auditcaution

All five workflows were analyzed, but all 12 action references are unpinned and a high-confidence bot-conditions finding affects the Dependabot auto-merge workflow. The pull_request_target trigger has no untrusted checkout or script-injection sink, so this remains a caution rather than a severe risk.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

stephenjude

Direct Dependencies

DependencyLast ReleaseScore
filament/filament
Version ^4.0|^5.3
—
—
illuminate/contracts
Version ^12.0|^13.0
—
—
mobiledetect/mobiledetectlib
Version ^4.8
—
—
spatie/laravel-package-tools
Version ^1.15.0
—
—
stephenjude/filament-two-factor-authentication
Version ^3.0
—
—

Weekly Downloads

Info

Last Published
3 months ago
Created
2 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform