Clear documentation, repository tests, matching source, and an MIT license provide solid transparency. The project is young and has limited visible adoption, so future maintenance capacity is less established.
62%
Total Score
50
100
89
83
The package and repository are owned by the same individual account, so the source relationship is clear, but there is no organization backing shown to broaden maintenance capacity.
The package is young at 205 days, with three releases and a median interval of about 38 days. That shows ongoing initial publishing, but not yet a long maintenance record.
There were no commits and no active maintainers in the last three months. Because the project is young and has released recently, this lowers maintenance confidence but is not conclusive abandonment evidence.
The repository has zero stars, forks, and watchers after 205 days. Popularity is only supporting evidence, but this provides little independent evidence of maturity or community resilience.
The repository has no security policy. This is a transparency gap for a package used in applications, though Dependabot and repository tooling provide some compensating security practice.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
filament/filament Version ^5.3 | — | — |
illuminate/contracts Version ^11.0 || ^12.0 || ^13.0 | — | — |
spatie/laravel-package-tools Version ^1.16 | — | — |
filament/spatie-laravel-media-library-plugin Version ^5.2 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.