Usable with caveats: the package is licensed, tested, version-stable, and backed by an organization, but recent repository activity is absent and the release cadence is uneven. Missing security policy and scanning also reduce transparency.
62%
Total Score
50
50
83
75
The repository recorded zero commits and zero active maintainers in the last 3 months, which is the strongest concern because recent pushing does not demonstrate sustained development activity.
Ten runtime dependencies create a meaningful maintenance and update surface for a Laravel blog package, though the profile is not unusually large for its feature set.
Only one registry account has publish access, which creates operational concentration; the organization-owned project backing provides some compensation but does not remove the single-publisher risk.
The package has 49 releases over 622 days, but only 2 releases in the last 12 months and a very uneven median interval of about 19 hours, making ongoing maintenance less predictable.
There are no open issues or pull requests and no recent issue or pull-request activity, so there is no visible community maintenance signal; this is partly consistent with a small project.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
innoboxrr/support Version ^2.0 | — | — |
livewire/livewire Version ^3.5 | — | — |
illuminate/support Version ^13.0 | — | — |
php-ffmpeg/php-ffmpeg Version ^1.3 | — | — |
innoboxrr/wirecomments Version ^2.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.