The broad 19-package runtime dependency set and missing security policy add modest transparency and maintenance concerns. The package is licensed, tested, and organization-backed, but long-term support remains unclear.
45%
Total Score
75
50
80
50
Only two releases exist, with the latest published about seven years ago and none in the last 12 months. This is strong evidence of abandonment risk despite the stable current version.
The package declares 19 runtime dependencies, creating a broad maintenance and compatibility surface for a Laravel CMS. No provided signal shows that this complexity is actively managed.
There were no new or closed issues or merged pull requests in the last month, while 25 pull requests remain open. That indicates limited recent maintenance activity.
The linked repository has no security policy, leaving vulnerability-reporting expectations unclear. This is a transparency gap, though it is less severe than the release and activity concerns.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
mews/purifier Version ~2.0 | — | — |
exdeliver/cart Version dev-master | — | — |
myparcelnl/sdk Version ^2.1 | — | — |
vinkla/hashids Version ^5.1 | — | — |
akaunting/money Version ^1.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.