A package to create customizable mail templates in Filament
58%
Total Score
100
94
50
Packagist marks the package abandoned at package scope and names wotz/filament-mail-templates as the replacement. The linked repository remains active, so this is a significant adoption concern rather than proof that the release is unfit.
The repository has no SECURITY.md or other security policy. This is a transparency gap, although Dependabot provides some compensating security tooling.
All five workflows were analyzed, but all 12 action references are unpinned and two workflows grant top-level write permissions. The audit also reports high-confidence bot-condition and template-injection findings; without an untrusted checkout or script-injection sink, these remain workflow-hygiene concerns rather than standalone severe risks.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
filament/filament Version ^4.0|^5.0 | — | — |
illuminate/contracts Version ^12.0|^13.0 | — | — |
wotz/filament-link-picker Version ^2.1 | — | — |
spatie/laravel-translatable Version ^6.5 | — | — |
spatie/laravel-package-tools Version ^1.12 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.