Package Health

whilesmart/entitlements-cashier

Clear documentation, tests, changelog, and licensing make the integration easier to evaluate. Organization backing and recent repository activity help, but the project is only 62 days old.

Latest 0.2.0PackagistPackagist

68%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

67

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

79

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Release historycaution

The package is only 62 days old with three releases, spaced about 31 days apart. This shows ongoing publication but provides limited long-term maintenance evidence.

Repo bus factorcaution

All two recent commits came from one contributor, giving the project a complete short-term contributor concentration. Organization backing provides some handoff capacity but does not demonstrate a second active contributor.

Repo commit activitycaution

The repository had two commits in the last three months, with activity from one maintainer. Recent activity exists, but the volume is thin for establishing durable maintenance.

Repo toolingcaution

The project uses Make and Composer, but no security scanning tools were detected. This is a modest transparency and maintenance gap rather than evidence of unsafe code.

Security policycaution

No SECURITY.md or other repository security policy was detected. For a package handling Stripe billing and webhooks, the lack of a reporting path modestly reduces transparency.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Whilesmart Team

Direct Dependencies

DependencyLast ReleaseScore
laravel/cashier
Version ^16.0
—
—
laravel/framework
Version ^11.0|^12.0
—
—
whilesmart/eloquent-entitlements
Version ^2.0
—
—

Weekly Downloads

Info

Last Published
4 days ago
Created
2 months ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform