Healthy on its first release, with strong documentation, tests, changelog, licensing, and a clearly structured repository. It is still unproven because there is no release or maintenance history yet, and its workflow does not declare top-level token permissions.
78%
Total Score
50
100
81
90
This is the first release and was published less than one hour before collection, so there is no evidence yet of sustained release maintenance; the lack of history is expected for a brand-new package rather than evidence of abandonment.
There have been no commits from active maintainers in the prior three months, but the repository and release are newly created, so this currently reflects limited observation time rather than a demonstrated maintenance collapse.
The repository has no stars, forks, or watchers, offering no supporting evidence of adoption; this is unsurprising for a package released less than one hour ago and is not by itself a health failure.
Composer build tooling is present, but no security scanning tools were detected, leaving a modest repository hygiene gap for a package handling irreversible remote operations.
The only workflow lacks top-level token permissions, so its GitHub Actions privileges are not explicitly minimized even though no write permissions were detected.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
laravel/framework Version ^12.0|^13.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.