The package includes a clear README, tests, a matching MIT license, and no install-time scripts. Pin the two workflow actions and establish longer-term commit history before relying on it broadly.
72%
Total Score
75
100
89
75
One registry maintainer is consistent with the matching individual-owned repository; the observed repository activity does not establish a broader maintainer base.
Nine releases appeared within about two hours, so the package is very new and has not yet demonstrated sustained maintenance or release stability.
No commits or active maintainers were recorded in the previous three months, but the repository is newly created and was pushed within minutes, so this is limited evidence rather than clear abandonment.
Composer build tooling is present, but no security-scanning tooling was detected; this is a modest transparency and maintenance gap.
The repository has no security policy, leaving vulnerability reporting and response expectations unspecified.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
laravel/framework Version ^12.0|^13.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.