It has a clear MIT license, substantial documentation, release notes, and a repository security policy. Recent development is active, while single-person ownership and no security scanning leave modest maintenance and assurance gaps.
82%
Total Score
67
100
94
83
A post-autoload-dump lifecycle script runs during installation, adding execution complexity, but this is a common Composer integration point and no harmful behavior is shown.
The repository is owned by the same individual namespace as the package, so the source linkage is consistent; it does not provide organizational succession support.
All 24 recent commits came from one contributor, creating a genuine continuity risk for a user-owned project with no organizational backing shown.
Composer build tooling is present, but no security scanning tools were detected; the missing scanning reduces assurance without indicating a direct health failure.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
filament/filament Version ^3.2|^4.0|^5.0 | — | — |
gsferro/odometer-easy Version ^1.0 | — | — |
spatie/laravel-package-tools Version ^1.15.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.