Package Health

tarique/smoothie-filament-grapesjs-v3

The package has a clear README, tests, changelog, MIT licensing, and a repository that matches the package. Its lack of releases and commits for about two years raises maintenance risk, so pinning this version is prudent.

Latest 1.0.3PackagistPackagist

55%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

38

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

83

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Repo commit activitydanger

There were no commits and no active maintainers in the last three months, consistent with the long release gap and indicating likely maintenance stagnation.

Lifecycle scriptscaution

A post-autoload-dump lifecycle script runs during installation. This is an additional execution surface and warrants caution, although the signal does not show that the script is harmful.

Maintainerscaution

Only one registry account has publish access. The repository is user-owned rather than organization-backed, so there is no provided evidence of a broader publishing or maintenance base.

Project backingcaution

The package and repository are both associated with the same individual user context, and the repository owner is not an organization. This supports identity continuity but not a broad project backing structure.

Release historycaution

The package is about two years old but has only three releases, with no releases in the last 12 months. That materially lowers confidence in ongoing maintenance.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Tarique Hasan

Direct Dependencies

DependencyLast ReleaseScore
filament/filament
Version ^3.0
—
—
illuminate/contracts
Version ^10.0 || ^11.0
—
—
spatie/laravel-package-tools
Version ^1.15.0
—
—

Weekly Downloads

Info

Last Published
2 years ago
Created
2 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform