Support package for Laravel based API projects
40%
Total Score
unhealthy
Risky: no releases or commits for over three years, compounded by missing licensing and basic project documentation.
Only two releases were published, with the latest in April 2023 and none in the last 12 months. This long period without releases raises abandonment risk for a dependency.
The repository recorded no commits and no active maintainers in the last three months, consistent with its last push being in April 2023. That indicates maintenance has effectively stopped.
No declared license, license file, or repository license file was detected. Without licensing terms, adopting the package creates a significant legal and transparency concern.
The artifact has no README, while tests and a changelog are absent from both the artifact and repository. Missing tests and changelog are normal packaging practice, but the absent README is a consumer-facing gap for a Laravel API library; release notes provide limited compensation.
The repository has no security policy. This leaves vulnerability-reporting expectations and response procedures unclear, adding a modest transparency concern.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
laravel/sanctum Version ^3.2 | — | — |
firebase/php-jwt Version ^6.3 | — | — |
guzzlehttp/guzzle Version ^7.2 | — | — |
laravel/framework Version ^10 | — | — |
darkaonline/l5-swagger Version ^8.5 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.