Recent releases, tests, release notes, and an active repository show useful ongoing work. Maintenance still depends on one contributor, and workflow references are unpinned, so choose a maintained successor if one becomes available.
45%
Total Score
75
86
50
Packagist marks the entire package as abandoned, not merely this release. That is a strong adoption and maintenance warning even though the listed replacement points to the same project.
All 9 recent commits came from one contributor, so maintenance and review capacity are concentrated in a single person.
The repository has no security policy, leaving vulnerability-reporting and response expectations undocumented for a package that handles application audit data.
All 3 workflows were analyzed without detected dangerous sinks or audit findings, but all 6 action references are unpinned, leaving build inputs less reproducible.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
laravel/framework Version >=9.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.