Package Health

wpstarter/o-workbench

Workbench Companion for Laravel Packages Development

Latest v2.0PackagistPackagist

58%

Total Score

caution

A brand-new package has one release and no recorded commits in the last three months, with all workflow actions unpinned.

Health Score Breakdown

Lifecycle scriptscaution

A post-autoload-dump script runs during installation. This is worth awareness because install-time behavior expands the execution surface, although the signal alone does not show harmful behavior.

Release historycaution

This is a brand-new package with one release and no established release cadence, so its maintenance history is not yet demonstrated.

Repo commit activitycaution

The repository recorded zero commits and zero active maintainers over the last three months. Because the package is only newly released, this may reflect its age, but it leaves maintenance capacity unproven.

Security policycaution

No security policy was found in the repository, leaving disclosure and response expectations unclear for consumers.

Workflow auditcaution

All six workflows were analyzed with no high-confidence audit findings, and four use read-only permissions. However, all 23 analyzed action references are unpinned and one workflow grants top-level write access, creating a meaningful reproducibility and token-scope hygiene concern.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

DependencyLast ReleaseScore
symfony/yaml
Version ^7.2
—
—
fakerphp/faker
Version ^1.23
—
—
symfony/process
Version ^7.2
—
—
wpstarter/o-canvas
Version ^2.0
—
—
wpstarter/framework
Version ^2.1
—
—

Weekly Downloads

Info

Last Published
12 hours ago
Created
12 hours ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform