The package is compact and documented, with tests and clear organization backing. Its release pace is thin and recent repository activity is absent, while security review practices are not documented.
58%
Total Score
75
75
50
The package has 11 releases since November 2023 but only 1 release in the last 12 months, indicating a thin current release cadence. The latest release is recent enough to avoid an abandonment conclusion, but maintenance momentum is limited.
The repository had 0 commits and 0 active maintainers during the last 3 months. Although a release occurred within the broader assessment period, the current lack of source activity raises maintenance risk.
Composer is used as the build tool, but no security-scanning tooling is configured. The missing scanning evidence is a modest process weakness for a package handling validation and banking helpers.
The repository has no security policy. This is a transparency gap for reporting and handling vulnerabilities, though it does not by itself show that the package is unsafe.
Version v0.3.1 is not on a stable major version, so the public API may still change. It is not marked as a prerelease, which partly offsets the risk for adopters.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
illuminate/support Version ^9.19|^10.40|^11.0|^12.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.