Package Health

veloquent/core

Core package of Veloquent.

Latest v2.12.0PackagistPackagist

68%

Total Score

caution

Usable with caveats: all recent repository commits come from one contributor.

Health Score Breakdown

Project backingcaution

The repository is owned by an individual user rather than an organization, so there is no provided evidence of organizational handoff capacity to offset the concentrated contributor activity.

Repo bus factorcaution

One contributor made all 10 commits in the last three months, leaving maintenance dependent on a single person and increasing continuity risk.

Repo toolingcaution

Composer build tooling is present, but no security-scanning tools were detected, leaving security checks less transparent.

Security policycaution

The repository has no security policy, so the process for reporting and handling vulnerabilities is unclear for a security-sensitive backend package.

Workflow auditcaution

The single workflow was fully analyzed with no dangerous triggers, untrusted checkouts, script injection, or audit findings. However, both action references are unpinned, which weakens build reproducibility and supply-chain hygiene.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Kevin

Direct Dependencies

DependencyLast ReleaseScore
laravel/ai
Version *
—
—
laravel/sanctum
Version ^4.0
—
—
kevintherm/exprc
Version ^0.0.3
—
—
laravel/framework
Version ^13.0
—
—
laravel/socialite
Version ^5.26
—
—

Weekly Downloads

Info

Last Published
2 months ago
Created
6 months ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform