The package is small and clearly identified, with matching repository naming, a usable README, and tests. Its MIT declaration is helpful, but minimal project activity and absent security policy leave maintenance and oversight concerns.
43%
Total Score
33
50
78
75
The package has had only three releases, all concentrated in January 2023, with no release in over three years. That strongly raises abandonment risk for a dependency.
There were zero commits and zero active maintainers in the last three months, consistent with a project that has been inactive for over three years. This is the strongest maintenance concern in the assessment.
Seven runtime dependencies, including several related project packages, create a moderately broad dependency surface for this small package. The signal does not show that these dependencies are unsafe or unmaintained, so this is only a mild concern.
The repository is owned by a user account rather than an organization, so the one-person maintainer list represents a genuinely thin apparent project base.
There are no open issues or pull requests and no recent activity. While a clean tracker can be positive, alongside the absent commits it offers no evidence of ongoing maintenance.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
doctrine/dbal Version ^3.3 | — | — |
faridlab/salt-laravel Version ^9 | — | — |
faridlab/salt-laravel-file Version ^9 | — | — |
faridlab/laravel-search-query Version ^9 | — | — |
faridlab/salt-laravel-comments Version ^9 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.