Usable with caveats: the package is actively published, tested, licensed, and backed by a matching repository, but it is less than a day old with only one contributor and limited security governance.
68%
Total Score
50
100
81
75
The repository is owned by an individual account rather than an organization, so the single-maintainer and single-contributor risks are not offset by visible organizational backing.
The package is very new, with only two releases since its first publication less than 24 hours ago. Recent activity is positive, but there is not yet enough history to demonstrate long-term maintenance or stability.
All recent commits come from a single contributor, leaving maintenance dependent on one person with no demonstrated handoff capacity.
There was one commit in the last three months from one active maintainer; the recent commit is encouraging, but the very low activity provides little evidence of sustained maintenance.
The repository has zero stars, forks, and watchers. This is weak supporting evidence for maturity, though popularity alone is not decisive for a newly published package.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
laravel/framework Version ^13.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.