The README gives installation and migration steps, and the MIT license is clearly declared. The package has no tests or security policy, while its last release and repository push were in June 2017, leaving little evidence of ongoing maintenance.
38%
Total Score
0
71
75
The package has had no releases in more than nine years; its three releases were concentrated between May and June 2017. This is strong evidence of abandonment risk for a dependency.
The repository recorded zero commits and zero active maintainers in the last three months, and its last push was in June 2017. The repository is not archived, but that does not compensate for the prolonged inactivity.
The repository has zero stars and zero forks, with one watcher. Popularity is only supporting evidence, but these values provide no additional evidence of community review or maintenance capacity.
Composer build tooling is present, but no security-scanning tooling was detected. That weakens ongoing maintenance hygiene, especially alongside the long period without activity.
The linked repository has no security policy, leaving no documented process for reporting or handling vulnerabilities. This is a transparency and maintenance concern, though not severe on its own.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
intervention/image Version ^2.3 | — | — |
egorryaroslavl/admin Version 1.* | — | — |
laravelcollective/html Version ^5.3.0 | — | — |
arrilot/laravel-widgets Version ^3.6 | — | — |
barryvdh/laravel-elfinder Version ^0.3.8 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.