Its ten runtime dependencies increase the cost of keeping an application on it. The stable release format is orderly, but that does not make this a sound dependency choice.
12%
Total Score
50
33
Packagist marks the entire package as abandoned and names cnvs/canvas as its replacement. Package-level abandonment is a severe adoption risk.
The last release was in October 2018, nearly eight years ago, and there were no releases in the preceding 12 months. This is strong evidence of abandonment despite the package's earlier 29-release history.
The package declares ten runtime dependencies, creating a substantial compatibility and maintenance surface for an already inactive package. No dependency-specific failure is shown, so this is a secondary concern rather than the main risk.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
doctrine/dbal Version ^2.5 | — | — |
laravel/scout Version 5.* | — | — |
erusev/parsedown Version ^1.6 | — | — |
maatwebsite/excel Version ^2.1 | — | — |
illuminate/support Version ~5.4 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.