The registry reports v1.0.1 as latest while this assessment names v1.1.0, making the release identity unclear. The repository has no security policy or security scanning, though tests, a README, and release notes provide some transparency.
38%
Total Score
0
75
50
The package has made no release in more than five years and had only three releases overall, indicating sustained abandonment risk.
The repository recorded zero commits and zero active maintainers in the last three months, consistent with the long release gap and weak current maintenance capacity.
Composer build tooling is present, but the repository reports no security-scanning tools, leaving an avoidable maintenance and assurance gap.
The repository has no security policy, reducing transparency about how vulnerabilities should be reported and handled.
The package is marked stable rather than prerelease, but the assessed v1.1.0 differs from the registry's reported latest version v1.0.1, creating release identity uncertainty.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
laravel/ui Version ^3.2 | — | — |
cocur/slugify Version ^4.0 | — | — |
doctrine/dbal Version ^3.1 | — | — |
laravel/tinker Version ^2.5 | — | — |
fideloper/proxy Version ^4.4 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.