MIT licensing, a matching repository, and release notes improve transparency. The short README and absent security policy leave limited integration guidance and assurance for a library dependency.
67%
Total Score
75
86
50
The release includes notes for this exact version, and the absence of tests and a changelog in the package is normal packaging practice. However, the README is only 27 characters, leaving little consumer guidance for a library.
There were 0 commits and 0 active maintainers in the last three months. Recent release activity and the repository push on May 6, 2026 provide some compensation, but the short-term development activity remains thin.
Composer is used for builds, but no security scanning tools were detected. That is a modest transparency and assurance gap, not evidence that the package is unsafe.
The repository has no security policy, so users have no documented vulnerability-reporting process or published expectations for handling security issues.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
illuminate/config Version ^7.0|^8.0|^9.0|^10.0|^11.0|^12.0|^13.0 | — | — |
flooris/laravel-money Version ^0.1|0.2|0.3|0.4|0.5|0.6|0.7 | — | — |
spatie/laravel-query-builder Version ^3.3|^5.0.0|^6.2.1 | — | — |
spatie/laravel-json-api-paginate Version ^2.0 | — | — |
kirschbaum-development/eloquent-power-joins Version ^2.4|^3.5|^4.2 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.