Package Health

sveda-ai/laravel-sdk

Usable with caveats: this is a very new v0.1.0 package with only one release and no demonstrated commit history yet. It has a linked, non-archived repository, tests, a README, an MIT license, and no install-time scripts, but maintenance and security practices are not yet established.

Latest v0.1.0PackagistPackagist

65%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Dependencies
Dependencies
Evaluates the health and security of package dependencies

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

79

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health checks

Dependency profilecaution

The package has 7 runtime dependencies, including Laravel, Sanctum, MCP, and the Veda client libraries. This is a substantial integration surface for an SDK, though the dependencies are directly relevant to its stated functionality.

Maintainerscaution

Only one registry account has publish access, creating a limited publishing and maintenance base. The repository is user-owned rather than organization-owned, so there is no organization backing shown to offset that concentration.

Project backingcaution

The registry namespace is organization-styled, but the linked repository is owned by an individual user account, so organizational backing is not established. This provides little resilience beyond the single visible publisher.

Release historycaution

The package is only 1 day old and has a single release, so there is little evidence of release reliability or sustained maintenance. This is expected for a new package but remains a meaningful maturity concern.

Repo commit activitycaution

There were no commits or active maintainers recorded during the last 3 months. Because the repository and package are only about 1 day old, this mainly reflects insufficient history rather than proven abandonment, but ongoing maintenance is unestablished.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Neresson

Direct Dependencies

DependencyLast ReleaseScore
laravel/mcp
Version ^0.8.2
veda-ai/client
Version ^0.1 || dev-main
illuminate/http
Version ^12.0 || ^13.0
laravel/sanctum
Version ^4.0
illuminate/support
Version ^12.0 || ^13.0

Weekly Downloads

Info

Last Published
1 day ago
Created
1 day ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform