A powerful, zero-config fuzzy search package for Laravel with fluent API
68%
Total Score
75
100
89
90
Only one account has registry publish access, creating a limited publishing succession path. The matching user-owned repository provides direct ownership context, but does not offset the single-person bus factor completely.
The repository has zero commits and zero active maintainers in the last three months. This is a maintenance concern, although the recent release and push show that activity has not stopped permanently.
Nine stars and one fork indicate a small user and contributor footprint. Popularity is only supporting evidence, so this lowers confidence in community resilience rather than making the package unsafe by itself.
Composer is used for builds, but no security scanning tools were detected. The missing scanning is a transparency and assurance gap for a package with database, queue, and indexing functionality.
The only workflow lacks top-level token permissions. Although no write permissions were explicitly requested, explicitly restricting workflow permissions would provide stronger CI hardening.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
illuminate/bus Version ^10.0|^11.0|^12.0|^13.0 | — | — |
symfony/finder Version ^6.0|^7.0|^8.0 | — | — |
illuminate/queue Version ^10.0|^11.0|^12.0|^13.0 | — | — |
illuminate/console Version ^10.0|^11.0|^12.0|^13.0 | — | — |
illuminate/support Version ^10.0|^11.0|^12.0|^13.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.