The package has clear documentation, licensing, and frequent recent releases. Maintenance remains concentrated in one contributor, and no security policy is provided.
72%
Total Score
67
93
83
The repository is owned by a user account rather than an organization, so there is no demonstrated organizational handoff to offset the concentrated contributor base.
Only one contributor made commits in the last 3 months, holding 100% of the commit share, which creates a meaningful continuity risk for a user-owned project.
The repository has no stars or forks and only one watcher, so there is little public adoption evidence; frequent releases and recent commits partly compensate for this weakness.
The repository has no documented security policy, leaving vulnerability-reporting and response expectations unclear.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
fakerphp/faker Version ^v1.24.1 | — | — |
mockery/mockery Version 1.6.* | — | — |
illuminate/testing Version ^v13.33.0 | — | — |
orchestra/testbench Version ^v11.3.0 | — | — |
codeception/codeception Version ^5.3.6 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.