Clear documentation, repository tests, and regular releases support adoption. Recent commit activity is absent, and one workflow uses an unpinned container image.
72%
Total Score
83
100
100
100
The repository had zero commits and zero active maintainers in the last three months, which weakens evidence of current maintenance despite the recent release history.
All three workflows were analyzed with no untrusted checkout or script-injection findings, but all seven action references are unpinned and the auditor found a high-confidence unpinned container image. These create avoidable build-reproducibility and supply-chain hygiene risk.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
slickdeals/statsd Version ~3.0 | — | — |
jdorn/sql-formatter Version ^1.2 | — | — |
illuminate/contracts Version ^11.0|^12.0 | — | — |
league/flysystem-aws-s3-v3 Version ^3.29 | — | — |
spatie/laravel-package-tools Version ^1.19 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.