Package Health

webregulate/dev-companion

The README still contains template text, and the repository has no security policy or scanning tools. Organization backing, repository tests, a changelog, and a matching source repository provide useful structure, but there is not yet enough release history to establish durability.

Latest 0.8.0PackagistPackagist

58%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

75

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

75

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Health Score Breakdown

Lifecycle scriptscaution

The package uses a post-autoload-dump install-time script, adding execution during Composer installation and therefore some supply-chain exposure, although this alone does not show unsafe behavior.

Release historycaution

The package is only 31 days old and has one release, so there is little evidence of sustained maintenance or a dependable release pattern.

Repo commit activitycaution

The repository recorded 0 commits and 0 active maintainers in the last 3 months. Because the package is only 31 days old, this is limited evidence rather than proof of abandonment, but it provides no demonstrated ongoing activity.

Repo toolingcaution

Composer build tooling is present, but no security scanning tools were detected. That is a modest transparency and maintenance gap for a package intended to run developer commands.

Security policycaution

The linked repository has no security policy, leaving vulnerability-reporting expectations undocumented. This is a hygiene gap rather than evidence that the release is unsafe.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Craig Dennis

Direct Dependencies

DependencyLast ReleaseScore
illuminate/contracts
Version ^10.0||^11.0||^12.0||^13.0
spatie/laravel-package-tools
Version ^1.16

Weekly Downloads

Info

Last Published
1 month ago
Created
1 month ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform