Package Health

tanwencn/laravel-blog

It has an MIT license, tests, a usable README, and no install-time scripts. The small project has no security policy or security scanning, adding maintenance uncertainty.

Latest v1.1.0PackagistPackagist

38%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

33

Dependencies
Dependencies
Evaluates the health and security of package dependencies

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

72

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

83

Health Score Breakdown

Release historydanger

The package was last released in August 2018 and has had no releases in the last 12 months, which is strong evidence of abandonment risk for a dependency.

Repo commit activitydanger

The repository had zero commits and zero active maintainers in the last three months, consistent with the long release gap and indicating substantial abandonment risk.

Dependency profilecaution

Nine runtime dependencies create meaningful compatibility and maintenance surface for an older Laravel package, with no development dependencies shown to support project maintenance.

Maintainerscaution

Only one registry maintainer is listed, creating a thin publishing base; the matching repository owner confirms ownership but does not show broader maintenance capacity.

Project backingcaution

The registry namespace and repository owner match, but the owner is an individual account rather than an organization, so there is no demonstrated organizational backing to offset the thin maintainer base.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

tanwen

Direct Dependencies

DependencyLast ReleaseScore
league/flysystem
Version ^1.0
laravel/framework
Version ~5.5.0|~5.6.0
studio-42/elfinder
Version ~2.1.10
symfony/dom-crawler
Version ^4.1
igaster/laravel-theme
Version ^2.0

Weekly Downloads

Info

Last Published
8 years ago
Created
8 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform