Temporary upload URLs, file retrieval, and cleanup for Laravel.
68%
Total Score
caution
A brand-new package has only one release and no recorded commit activity yet.
The package and repository are owned by the same individual account, which is coherent but provides a single-person ownership base rather than organizational backing.
This is a brand-new package with one release and no release history beyond the current day, so maintenance maturity cannot yet be demonstrated.
The repository records zero commits and zero active maintainers in the last three months, but the package is only hours old, so this primarily reflects limited history rather than demonstrated abandonment.
No repository security policy is provided. This is a transparency gap, though it is less significant for a newly published package with security scanning enabled.
All three workflows were analyzed and use read-only permissions, with no high- or medium-confidence audit findings; however, one pull-request-target workflow checks out untrusted code and one of 19 action references is unpinned.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
nesbot/carbon Version ^3.0 | — | — |
aws/aws-sdk-php Version ^3.0 | — | — |
illuminate/http Version ^12.0 || ^13.0 | — | — |
league/flysystem Version ^3.0 | — | — |
illuminate/config Version ^12.0 || ^13.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.