The package includes a substantial README, tests, a license, and a matching source repository. No security policy or scanning is present, and the single release has not yet demonstrated ongoing maintenance.
60%
Total Score
50
88
75
The package runs a post-autoload-dump install-time script, which adds execution during installation and deserves review even though this script type can be normal in Composer packages.
This is the first release, published today, so there is no release history or cadence demonstrating sustained maintenance.
The repository has 0 commits and 0 active maintainers in the last 3 months; because the project is newly created, this is an early maturity gap rather than evidence of abandonment.
Composer build tooling is present, but no security scanning tool was detected, reducing automated protection against dependency or code issues.
The linked repository has no security policy, leaving vulnerability-reporting expectations and response procedures undocumented.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
filament/filament Version ^3.0|^4.0|^5.0 | — | — |
illuminate/contracts Version ^10.0|^11.0|^12.0 | — | — |
spatie/laravel-package-tools Version ^1.16 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.