The MIT license, package README, and lack of install scripts make the release straightforward to inspect and install. Its small public footprint and absent security policy leave less evidence for long-term support and security practices.
58%
Total Score
50
81
75
This package is about three and a half months old and has only one release, so there is not yet enough history to demonstrate sustained maintenance.
The repository recorded zero commits and zero active maintainers over the past three months. Because the project is newly published, this is a meaningful maintenance concern but not proof of abandonment.
The repository has zero stars, forks, and watchers, providing no community evidence to offset the short release and maintenance history.
Composer build tooling is present, but no security-scanning tools are configured. This is a modest process gap rather than a severe risk on its own.
The repository has no security policy, which reduces transparency about vulnerability reporting and handling for a package that provides application core functionality.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
jason/captcha Version ^v1.2.0 | — | — |
laravel/sanctum Version ^v4.3.0 | — | — |
maatwebsite/excel Version ^3.1.68 | — | — |
nette/php-generator Version ^v4.1.8 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.