The package has a minimal consumer-facing presentation and no visible security policy. MIT licensing and no install-time scripts reduce adoption friction, but the maintenance evidence remains too thin for a dependable dependency.
38%
Total Score
25
71
75
The latest release was published in November 2015, with no releases in the last 12 months; this is strong evidence of abandonment for a framework integration package.
The repository recorded zero commits and zero active maintainers in the last three months, consistent with the package having been inactive for years.
Only one registry account has publish access, leaving little visible publishing capacity; the repository is user-owned, so there is no organizational backing to offset that thin base.
The package has no README, which makes a Laravel library harder to evaluate and integrate. Missing tests and changelog files are normal for a published artifact and do not add a concern here.
Composer is used for the build, but no security-scanning tooling is present; this is a modest transparency and maintenance gap rather than a severe risk.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.