The package is clearly identified, MIT-licensed, and has practical installation documentation. Its tiny audience and lack of security tooling add little assurance, while the source has seen no commits in over seven years.
42%
Total Score
0
75
50
Only two releases were published, both in June 2019, with no releases in the last 12 months. This is strong evidence of abandonment risk for a package intended to support an evolving framework.
The repository recorded zero commits and zero active maintainers in the last three months, consistent with the release history showing no updates for over seven years.
The repository has only 2 stars, 0 forks, and 1 watcher. Popularity is not decisive, but this provides little supporting evidence of active use or community oversight.
Composer build tooling is present, but no security scanning tools were detected. This leaves release and dependency issues with less automated oversight.
The linked repository has no security policy, leaving no documented process for reporting or handling vulnerabilities. The long maintenance gap makes this omission more significant.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
laravel/passport Version >=4.0 | — | — |
vlucas/phpdotenv Version ~2.2 | — | — |
atnic/eloquent-filters Version ^2.2 | — | — |
laravel/lumen-framework Version >=5.5 <5.8 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.