The package includes a README, tests, changelog, and a matching source repository. Install-time scripts and no security scanning add maintenance and review friction, while the project shows no recent activity.
44%
Total Score
0
79
50
This is the only release, published nearly four years ago, with no releases in the last 12 months. That strongly raises abandonment risk for a Laravel application template.
The repository recorded zero commits and zero active maintainers in the last three months, consistent with the nearly four-year release gap and weak evidence of ongoing maintenance.
Four Composer lifecycle scripts run during installation or updates, increasing execution complexity and review needs. Such scripts are common for Laravel project scaffolds but still add dependency-installation surface.
Composer is used for the build, but no repository security scanning tools are reported. This is a moderate transparency gap, especially for a project with installation scripts.
The repository has no security policy, leaving vulnerability reporting and response expectations undocumented. This matters more for a full Laravel application scaffold than for a tiny utility.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
laravel/tinker Version ^2.7 | — | — |
laravel/sanctum Version ^2.8 | — | — |
tightenco/ziggy Version ^1.0 | — | — |
guzzlehttp/guzzle Version ^7.2 | — | — |
laravel/framework Version ^9.19 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.