Clear licensing, tests, changelog, and a matching repository make maintenance easier to assess. Its same-day release history and absent security scanning leave limited evidence of long-term upkeep.
76%
Total Score
50
100
89
88
The repository is owned by an individual account rather than an organization, so the short two-person registry maintainer list provides limited backing capacity.
Three releases arrived within the first day, showing active initial publishing but providing little evidence of maintenance over a longer period.
There were no commits or active maintainers in the prior three months, but the package and repository were created and updated today, so this is limited historical evidence rather than clear abandonment.
Composer build tooling is present, but no security scanning tool was detected, leaving a modest transparency and maintenance gap.
The repository has no security policy, which reduces guidance for reporting vulnerabilities but is a documentation gap rather than a direct dependency risk.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
spatie/laravel-medialibrary Version ^11.0|^12.0|^13.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.