The project has repository tests, a matching source repository, a license, and recent publication history. Its small audience, absent security policy, and unpinned workflow actions leave useful maintenance and build-hygiene gaps.
68%
Total Score
50
100
89
83
The repository recorded zero commits and zero active maintainers in the last three months, a concrete sign of slowed maintenance and increased abandonment risk.
The published artifact has no readme, tests, or changelog, but repository tests are present; missing tests and changelog are normal for published artifacts, while the missing consumer readme is a minor documentation gap.
There are six open issues and one open pull request, but no issues or pull requests were opened or closed in the last month, consistent with reduced current attention.
The repository has 33 stars and 5 forks, showing a small user base. This limits popularity-based confidence but is not itself a dependency risk for a stable package.
The repository has no security policy, reducing transparency about how vulnerabilities should be reported and handled; the presence of composer-audit partly offsets this gap.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
nesbot/carbon Version ^2.0|^3.0 | — | — |
laravel/framework Version ^10.0|^11.0|^12.0|^13.0 | — | — |
maatwebsite/excel Version ^3.1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.