Usable with caveats: the package is small, licensed, tested, and backed by an organization, but it has had no release or repository activity for almost two years. Its limited adoption and missing security workflow documentation add maintenance and transparency concerns.
62%
Total Score
75
100
78
75
Only two releases have been published, with no release in the last 12 months and an interval of about 20 months between releases. That may be reasonable for a small stable helper, but it lowers evidence of ongoing maintenance.
There were no commits and no active maintainers in the last three months, with the repository last pushed almost two years ago. For a small utility this may reflect stability, but it leaves little evidence that issues or compatibility changes are being handled.
The repository has zero stars and forks and only one watcher, indicating very limited visible adoption. Popularity is only supporting evidence, so this adds caution rather than making the package unfit by itself.
The repository uses Composer for builds, but no security scanning tooling was detected. This is a transparency gap, though the absence of scanning alone is not severe for this small package.
The linked repository is not archived, although its last push was almost two years ago. The active repository status is reassuring, but the old last-push date is consistent with the maintenance concern shown by release history.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
laravel/framework Version >=5.8 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.