The dependency set is moderate, and the registry metadata is internally inconsistent. The repository could not be found, so current maintenance and provenance cannot be verified.
38%
Total Score
50
50
The package has had no releases in over seven years, despite 14 releases overall; this strongly indicates abandonment risk for a production dependency.
Five runtime dependencies create some ongoing compatibility and maintenance exposure, although the profile is not unusually large or inherently unsafe.
The package is marked as a stable major with no recent prereleases, but the registry reports v1.5.3 as latest while the assessed release is v2.0.6, creating a material metadata and provenance inconsistency.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
spatie/laravel-fractal Version ^5.3 | — | — |
rollbar/rollbar-laravel Version ^4.0 | — | — |
ethical-jobs/laravel-storage Version >=1.0 <2.0 | — | — |
spatie/laravel-responsecache Version ^4.4 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.