The source includes tests, a changelog, and a matching README, but has no security policy or security scanning. That leaves limited evidence of current oversight.
38%
Total Score
50
88
50
The package has made 102 releases, but none in the last four years; the latest release was published in May 2022. This strongly raises abandonment risk despite its substantial historical release count.
The repository recorded no commits and no active maintainers in the last three months. Combined with the old latest release, this indicates that maintenance has effectively stopped.
Composer build tooling is present, but no security scanning tools were detected. The missing scanning reduces supply-chain hygiene evidence for a package intended for application integration.
The repository has no security policy, leaving no documented process for reporting or handling vulnerabilities. This is a transparency and maintenance gap, though it is less serious than the lack of recent activity.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
ramsey/uuid Version ^3.8|^4.0 | — | — |
fzaninotto/faker Version ^1.8 | — | — |
league/flysystem Version ^1.0 | — | — |
illuminate/console Version ^5.7|^6.0|^7.0 | — | — |
illuminate/routing Version ^5.7|^6.0|^7.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.