Package Health

yakovenko/laravel-lighthouse-graphql-multi-schema

Security coverage is limited, and the project currently has no active contributors beyond its single maintainer. Frequent releases and a recent repository push provide useful evidence of ongoing ownership, while tests and a clear license support adoption.

Latest v2.3.1PackagistPackagist

68%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

63

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

94

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Health Score Breakdown

Maintainerscaution

Only one registry account has publishing access. That is a meaningful continuity risk for a user-owned project because release capacity depends on one person.

Project backingcaution

The repository is owned by an individual account rather than an organization, so the single registry maintainer is not offset by visible organizational backing.

Repo commit activitycaution

The repository recorded zero commits and zero active maintainers in the last 3 months. This conflicts with the frequent release history and is a caution for current maintenance continuity.

Repo toolingcaution

Composer is used as a build tool, but no security scanning tools are present. The missing scanning layer weakens supply-chain hygiene without proving the package is unsafe.

Security policycaution

The repository has no security policy. That reduces transparency about vulnerability reporting and response expectations.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Alexander Yakovenko

Direct Dependencies

DependencyLast ReleaseScore
laravel/framework
Version ^9.0 || ^10.0 || ^11.0 || ^12.0 || ^13.0
nuwave/lighthouse
Version ^6.0
haydenpierce/class-finder
Version ^0.4 || ^0.5

Weekly Downloads

Info

Last Published
5 days ago
Created
2 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform