Package Health

webparking/laravel-cash

Tests, release notes, and a clear README make the package easier to evaluate. The repository has no security policy, and its three workflow actions are all unpinned, adding maintenance and build-trust concerns.

Latest 2.3.0PackagistPackagist

46%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

67

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

93

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

67

Health Score Breakdown

Release historycaution

The package has had 33 releases since April 2020, but none in the last 12 months and the latest release was over four years ago. This is strong evidence that maintenance has stopped.

Repo commit activitycaution

The repository recorded no commits and no active maintainers in the last three months, consistent with the long release gap. Organization backing does not compensate for absent recent work.

Repo issue activitycaution

There were no new or closed issues or pull requests in the last month, while four issues and one pull request remain open. This supports the conclusion that maintenance is inactive.

Security policycaution

The repository has no security policy. This is a transparency gap for a package that handles API credentials, although it is not evidence of a security incident.

Workflow auditcaution

The single workflow was fully analyzed with no dangerous triggers, untrusted checkouts, or audit findings, but all three action references are unpinned. That leaves avoidable build-integrity exposure.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

DependencyLast ReleaseScore
myclabs/php-enum
Version ^1.7
—
—
laravel/framework
Version ^7.30.4|^8.40.0
—
—
symfony/http-kernel
Version ^5.1.5
—
—
artisaninweb/laravel-soap
Version 0.3.0.10
—
—

Weekly Downloads

Info

Last Published
4 years ago
Created
6 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform