The package has a clear MIT license and a substantial README, but its tiny 11-file tree has no tests. With no recent commits and only two releases, maintenance risk is high; Laravel compatibility may be left to you.
38%
Total Score
0
67
50
Only two releases exist, with the latest published about 9 years ago and none in the last 12 months. This is strong evidence of an unmaintained dependency despite the repository not being archived.
The repository recorded 0 commits and 0 active maintainers in the last 3 months, consistent with the roughly 9-year-old latest release. This materially increases abandonment and compatibility risk.
The linked repository is not archived, which leaves a possible maintenance path open. However, its last push was in 2017, so this does not offset the stronger evidence of inactivity.
No repository security policy was found. This is a transparency and reporting gap, though it is secondary to the package's long-term maintenance risk.
The assessed v0.1.1 is not a stable major release, indicating an immature version line. Its long period without releases provides no compensating evidence of continued stability.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
laravel/framework Version 4.*|5.* | — | — |
codesleeve/laravel-stapler Version 1.0.* | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.