The release is licensed, documented, and backed by a matching repository with tests and release notes. Its small dependency set and Dependabot support help, but workflow safeguards are imperfect.
55%
Total Score
67
100
94
63
The package uses a post-autoload-dump install-time script. This is an additional installation behavior to inspect, but the signal alone does not show that it is unsafe or unusually broad.
The package has 13 releases over about 3 years, but none in the last 12 months. That is a meaningful maintenance concern despite a previously regular median release interval of about 31 days.
The repository recorded zero commits and zero active maintainers over the last 3 months. Combined with no releases in the last 12 months, this raises a real maintenance concern.
There are no open issues and four open pull requests, but no issues or pull requests were merged in the last month. This provides limited evidence of current project activity.
The repository has no security policy. For a small UI component package this is a transparency gap, though it is less consequential than missing maintenance or release evidence.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
filament/forms Version ^4.0 | — | — |
spatie/laravel-package-tools Version ^1.15.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.