Clear README, tests, licensing, and a focused project tree make the package easy to inspect and adopt. Its install scripts fit a Laravel starter kit, but formal security disclosure is absent and the repository has had no commits in three months.
61%
Total Score
50
88
88
The registry namespace and repository are owned by the same individual account, which is consistent ownership but provides a thin backing structure compared with an organization-owned project.
The package is 143 days old with four releases, all concentrated in the first week; this shows an initial release burst but no later release activity.
There were zero commits and zero active maintainers during the last three months, a concrete sign that maintenance may have stalled after the initial release burst.
Composer build tooling is present, but no security-scanning tools were detected; this is a modest transparency and maintenance weakness rather than a severe risk.
The repository has no security policy, leaving no documented channel or process for reporting vulnerabilities in a starter kit that includes authentication features.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
laravel/tinker Version ^3.0 | — | — |
laravel/fortify Version ^1.36 | — | — |
laravel/framework Version ^13.7 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.