The package still has a usable README, tests, changelog, MIT declaration, and a repository that matches its name. Its lone release and lack of recent commits leave compatibility and abandonment concerns; pin it only if its old Laravel support fits.
42%
Total Score
25
100
81
50
This is the package's only release, published over seven years ago, with no releases in the last 12 months. The lack of an established release history materially increases abandonment and compatibility risk.
There were no commits and no active maintainers in the last three months, despite the repository being available. Combined with the seven-year-old release, this is strong evidence of abandonment risk.
There are no open issues or pull requests, and no recent issue or pull-request activity. This is consistent with an inactive project, though it does not independently prove that the package is unmaintained.
Composer build tooling is present, but no security-scanning tool was detected. The missing scanner is a minor hygiene gap rather than evidence that the release is unsafe.
The repository has no security policy, leaving no documented reporting path for vulnerabilities. This is a transparency gap, although the small package and broader maintenance concerns are more consequential.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
laravelcollective/html Version ^5.8 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.