55%
Total Score
caution
Usable with caveats: no release in about 17 months raises abandonment concerns.
The package released 21 versions in a short burst, but its latest release was about 17 months ago and it has had no releases in the last 12 months. This is the strongest maintenance concern.
A post-autoload-dump install script runs during Composer setup. This is common packaging behavior, but it adds install-time execution that should be understood before adoption.
The linked repository has zero stars, forks, and watchers. Popularity is only supporting evidence, but this provides no external adoption signal to offset the stale release cadence.
Composer build tooling is present, but no security scanning tools are reported. For a small package this is a modest transparency and maintenance gap rather than a severe risk.
The repository has no security policy. This weakens the project's documented response path for reported issues, though the package's small scope limits the impact.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
laravel/framework Version ^8.75 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.