The repository is organization-owned and the package has a clear MIT license. It lacks a security policy, while its dependency profile and install behavior are reasonable for a young console library.
62%
Total Score
83
75
75
This is a very young package, released only once 41 days ago, so its maintenance track record is not yet established.
All six recent commits came from one contributor, creating a meaningful continuity risk. Organization ownership provides some backing, but no second active contributor is shown.
The linked repository has no security policy, reducing transparency about how vulnerability reports are handled.
Version v0.7.0 is not a stable major release, which adds some API-change risk for dependents despite there being no prerelease history.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
laravel/prompts Version ^0.3.0 | — | — |
symfony/console Version ^7.4.0 || ^8.0.0 | — | — |
symfony/process Version ^7.4.5 || ^8.0.5 | — | — |
fabricate/contracts Version ^0.7.0 | — | — |
fabricate/macroable Version ^0.7.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.