A clear README, matching license, and repository tests make integration straightforward. There is no automated security scanning or published security policy, so transparency is limited.
63%
Total Score
50
81
75
The package is only 92 days old and has two releases, both published within about 7 minutes, so there is little evidence of an established release cadence.
The repository recorded no commits and no active maintainers during the last 3 months. Because the package is young, this is a maintenance concern rather than proof of abandonment.
Composer build tooling is present, but the repository reports no security scanning tools. That weakens automated oversight without making the package unfit to use.
The repository has no published security policy, leaving vulnerability reporting and response expectations unclear for a package that handles Cloudflare credentials and uploads.
Version v0.2.0 is not a prerelease, but the 0.x version and very short release history indicate an API that may still change substantially.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
illuminate/contracts Version ^10.0||^11.0||^12.0 | — | — |
spatie/laravel-package-tools Version ^1.16 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.