Package Health

yard/brave-hooks

Healthy and actively maintained, with strong release and repository activity. The main caveats are very low public popularity, no security policy, and workflows without explicitly declared top-level permissions.

Latest v3.1.1PackagistPackagist

88%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

100

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

94

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

80

Health Score Breakdown

Repo popularitycaution

The repository has only 1 star and no forks, which provides little evidence of broad external adoption; this is a caution, but active maintenance compensates for the limited popularity signal.

Security policycaution

No SECURITY.md or other security policy was found, leaving vulnerability-reporting expectations unclear; active tooling and maintenance partly reduce the concern but do not replace a policy.

Token permissionscaution

All 4 workflows lack top-level token permission declarations. None requests top-level write access, but explicitly declaring least-privilege permissions would improve CI transparency.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

DependencyLast ReleaseScore
roots/acorn
Version ^5.0
spatie/laravel-csp
Version ^2.10
yard/wp-hook-registrar
Version ^2.0
spatie/laravel-package-tools
Version ^1.16

Weekly Downloads

Info

Last Published
7 days ago
Created
1 year ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform