The MIT license, documented usage, repository tests, changelog, and static analysis provide useful transparency. Pin this release only if its mature but inactive code fits your needs, since there is no recent maintenance to address framework or dependency changes.
40%
Total Score
0
88
50
The package has made no release in nearly five years and had zero releases in the last 12 months, which is a substantial maintenance concern for a Laravel integration.
The repository recorded zero commits and zero active maintainers in the last three months, reinforcing that maintenance has effectively stopped.
No repository security policy was found, leaving vulnerability-reporting guidance undocumented; this is a minor transparency gap rather than evidence of unsafe code.
Both workflows were analyzed without dangerous triggers or audit findings, but all five action references are unpinned, leaving avoidable build-reproducibility and action-update risk.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
illuminate/http Version ^8.0 | — | — |
guzzlehttp/guzzle Version ^7.2 | — | — |
illuminate/support Version ^8.0 | — | — |
spatie/laravel-package-tools Version ^1.1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.