The repository has matching package documentation, tests, release notes, and active publishing signals. Its very recent history, no recorded commits in the last three months, missing security policy, and broad workflow write permissions leave maintenance and transparency concerns.
67%
Total Score
50
90
50
The package is less than a day old with only two releases, so there is not yet enough history to demonstrate sustained maintenance or long-term stability.
No commits or active maintainers were recorded in the last three months, although the repository was pushed recently and has current release activity. This makes the maintenance picture uncertain rather than clearly abandoned.
The repository has no security policy, leaving vulnerability reporting and response expectations undocumented for a package that handles authentication components.
All four workflows were analyzed successfully, use no unpinned actions, and have no detected injection or untrusted-checkout issues. Two workflows grant top-level write permissions, which is a mild hygiene concern, but no untrusted path was found to reach those permissions.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
laravel/framework Version ^12.61.1|^13.12.0 | — | — |
spatie/laravel-package-tools Version ^1.16 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.