The package is clearly licensed, documented, and backed by a matching source repository with tests and a changelog. Its small user-maintained project has limited recent activity, so future compatibility and support are less certain.
65%
Total Score
50
100
88
67
A post-autoload-dump script is present. This is a Composer install-time behavior that deserves awareness but is not, by itself, evidence of poor package health.
One registry maintainer is consistent with a user-owned project, and the matching repository owner confirms direct ownership; it nevertheless indicates a limited maintainer base.
The package and repository are owned by the same individual account rather than an organization. This supports ownership alignment but provides no organizational maintenance capacity.
This is the package's only release, published about 18 months ago, with no releases in the last 12 months. That limits evidence of ongoing compatibility work.
The repository recorded no commits and no active maintainers in the last 3 months. This is a meaningful maintenance concern, despite the repository not being archived.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
laravel/nova Version ^4.0 | — | — |
illuminate/contracts Version ^10.0||^11.0||^12.0 | — | — |
spatie/laravel-package-tools Version ^1.16 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.