The five-file package has no tests, changelog, security policy, or security scanning, limiting confidence in future maintenance. Its stable MIT license and matching repository provide transparency, but they do not offset the lack of ongoing project activity.
15%
Total Score
33
100
44
83
Packagist marks the entire package as abandoned, with no replacement provided. Package-level deprecation is a severe adoption risk because future fixes and compatibility support are unlikely.
The package has had only three releases, all effectively concentrated on September 13, 2019, with no releases in the last 12 months. This supports the abandonment concern rather than showing an active release process.
There were zero commits and zero active maintainers in the last three months. Together with the archived repository and old release history, this indicates maintenance has stopped.
The linked repository is archived and was last pushed on September 13, 2019, so it is no longer an actively maintained source of fixes or updates.
The artifact includes a usable README, but it has no tests or changelog, and the repository also has neither. For a small five-file package this is a meaningful transparency and verification gap.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
laravel/framework Version 5.*|6.* | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.