The package is MIT-licensed, includes a substantial README, and its repository has tests. Long-term maintenance is still unproven, and no repository security policy or scanning tools are present.
64%
Total Score
75
81
75
This package is less than a day old and has five releases, with a median interval of about 39 minutes. That shows active initial publishing but provides no evidence of sustained maintenance.
The repository has recorded zero commits and zero active maintainers over the last three months. Because the package is less than a day old, this is mainly missing maturity evidence rather than proof of abandonment.
Composer build tooling is present, but no security-scanning tools were detected. This leaves a modest transparency and maintenance gap for a package handling marketing workflows and integrations.
The repository has no security policy, leaving no documented process for reporting and handling vulnerabilities.
Version v0.2.3 is not a stable major release, so the public API may still change even though recent versions are not marked prereleases.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
focalcrm/core Version self.version | — | — |
guzzlehttp/guzzle Version ^7.8.2 || ^8.0 | — | — |
laravel/framework Version ^12.0 || ^13.0 | — | — |
dophp/laravel-mail-builder Version ^1.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.