Package Health

xakki/laralog

Regular releases, a complete README, repository tests, and recent commits support ongoing use. A small user-owned project leaves limited handoff capacity, while workflow pinning and security-response documentation need attention.

Latest 0.3.2PackagistPackagist

68%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

75

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

88

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

67

Health Score Breakdown

Licensecaution

The artifact contains a GPL-3.0 license file, but the manifest declares the package proprietary. This unresolved mismatch creates legal and adoption uncertainty.

Repo bus factorcaution

All three recent commits came from one contributor, and the repository owner is an individual rather than an organization. This creates a meaningful handoff and abandonment risk.

Security policycaution

The repository has no security policy, so users lack a documented path for reporting vulnerabilities or understanding response expectations.

Version stabilitycaution

Version 0.3.2 is not a stable major release, which signals a less mature compatibility promise, though it is not marked as a prerelease and recent versions have been stable.

Workflow auditcaution

The single workflow was fully analyzed with read-only permissions and no audit findings, but both of its action references are unpinned. That leaves the build exposed to reference changes.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

DependencyLast ReleaseScore
psr/log
Version ^3.0
—
—
laravel/framework
Version ^10|^11|^12
—
—

Weekly Downloads

Info

Last Published
1 month ago
Created
1 year ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform