A Laravel ecommerce solution
40%
Total Score
unhealthy
Risky to adopt: one release in over eight years and no recent commit activity.
The package has had only one release, published over eight years ago, with no releases in the last 12 months. This is strong evidence of abandonment risk.
The repository recorded zero commits and zero active maintainers in the last three months. A push in October 2023 shows some historical activity but does not offset the current inactivity.
The artifact includes a substantial README and tests, but the README describes Antvel and instructs consumers to install a different package, reducing release transparency. The absence of a changelog is normal for a published artifact and is not counted against it.
Composer is present as the build tool, but the repository reports no security-scanning tools. That limits evidence of ongoing dependency and code-security maintenance.
The linked repository has no security policy. For an e-commerce application handling user and payment-related flows, this leaves vulnerability-reporting and response expectations unclear.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
antvel/shop Version 1.* | — | — |
laravel/dusk Version ^1.0 | — | — |
milon/barcode Version 5.* | — | — |
predis/predis Version ^1.0 | — | — |
laravel/tinker Version ~1.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.