The source is clearly identified, licensed, and includes a changelog. Recent release activity is offset by no commits in the last three months and a very short README; the organization-backed repository reduces abandonment concern.
64%
Total Score
75
100
78
75
A changelog and GitHub release are present, but the README contains only 14 characters and no tests are reported. The changelog compensates for release documentation, but the minimal README weakens consumer transparency.
The package has nine releases over roughly four years and one release in the last 12 months, including the assessed release. This shows continued publishing but a relatively limited cadence.
The repository recorded zero commits and zero active maintainers in the last three months. The recent release shows publishing activity, but the absence of recent source changes lowers confidence in ongoing maintenance.
The repository has zero stars, forks, and watchers. Popularity is only supporting evidence, so this limits external validation but does not by itself indicate abandonment.
Composer build tooling is present, but no security scanning tools are reported. This is a modest repository-hygiene gap rather than evidence that the package is unsafe.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
rinvex/countries Version ^8.1 | — | — |
laravel/framework Version ^8.70 | ^9.0 | ^10.0 | ^11.0 | ^12.0 | — | — |
spatie/laravel-package-tools Version ^1.11 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.