The prerelease status and no commits in three months add maintenance and compatibility risk. Repository tests, documentation, and a security policy provide useful support, but the replacement package is the safer dependency target.
38%
Total Score
75
71
75
Packagist marks the entire package as abandoned and names encoredigitalgroup/planningcenter as its replacement. This is a major adoption and maintenance warning for the assessed release.
The package defines a post-autoload-dump install-time script. This adds execution during installation, but the signal provides no evidence that the script is unsafe.
The linked repository recorded zero commits and zero active maintainers in the last three months. That indicates current maintenance has stopped or is too sparse to support a prerelease dependency confidently.
The repository name does not match the package name and its README does not mention this package. That weakens confidence that the linked repository directly represents this package.
The assessed release is v3.0.0-beta2, and 60% of recent releases are prereleases. Consumers should expect API changes and weaker compatibility guarantees.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
phpgenesis/http Version ^0.3|^1.0 | — | — |
illuminate/support Version ^10|^11|^12|^13 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.