The repository includes tests, a changelog, a README, and clear package ownership. Four years without a registry release or recent commits, plus no security policy, raises maintenance risk for a Laravel dependency.
58%
Total Score
75
100
81
83
The artifact declares MIT and contains license files, while detection also found BSD-2-Clause from bundled content. Licensing is present, but the additional detected license warrants checking coverage of included assets.
The package has 15 releases but none in the last 12 months, and its latest registry release was in July 2022. This is a substantial maintenance concern despite its earlier regular release cadence.
There were zero commits and zero active maintainers in the last three months. Combined with the old latest release, this indicates materially reduced maintenance capacity.
The repository has 34 open pull requests and no new or merged pull requests in the last month, suggesting unresolved contribution backlog and limited recent project activity.
Composer is used for builds, but no security-scanning tools are reported. The missing scanning is a hygiene gap, not evidence that the release is unsafe by itself.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
laravel/scout Version >=8 | — | — |
cakephp/chronos Version ^1.0|^2.0 | — | — |
spatie/laravel-permission Version ^5.4 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.