The package includes tests, a changelog, release notes, and a clear MIT license. The lone active contributor, absent security scanning, and unpinned workflow actions leave moderate maintenance and build-hygiene risk.
78%
Total Score
75
100
94
67
One contributor made 100% of the 115 commits in the last 3 months. This is a meaningful continuity risk because the project has no demonstrated secondary maintainer.
Composer build tooling is present, but no security-scanning tools were detected. The missing scanning is a moderate repository-hygiene gap rather than evidence that the release is unsafe.
The repository has no security policy. For a Redis-backed Laravel caching library, that weakens the documented process for reporting and handling security issues.
Both workflows were analyzed successfully with no dangerous triggers, untrusted checkouts, script injection, or audit findings. However, all 8 action references are unpinned, leaving build inputs exposed to upstream action changes.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
laravel/framework Version ^12.0|^13.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.