The MIT license, test coverage, and organization-backed repository improve transparency. Its minimal release history and inactive recent commit record make long-term maintenance uncertain.
57%
Total Score
75
100
69
67
Tests are present in both the package and repository. The missing readme and changelog are transparency gaps for a library consumers must integrate, but the test coverage partly compensates.
This package has made only one release, with no releases in the last 12 months, which is a meaningful maturity and maintenance concern for a 570-day-old package.
There were no commits and no active maintainers in the last three months, which weakens evidence of ongoing maintenance despite the repository not being archived.
The repository has zero stars, forks, and watchers. Popularity is only supporting evidence, but these counts provide no external adoption signal.
Composer is used as the build tool, but no security scanning tool was detected. The missing scanner is a hygiene gap rather than evidence that the release is unsafe.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
spatie/laravel-medialibrary Version ^11.12 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.