The package is clearly documented, MIT-licensed, and has no install-time scripts. Its one-person ownership and very small codebase leave limited redundancy for future fixes.
55%
Total Score
50
100
81
75
The package has had no release in nearly 10 years and none in the last 12 months, which is a substantial maintenance and compatibility concern.
Only one registry maintainer is listed, leaving little publishing redundancy for a user-owned project and increasing continuity risk if that maintainer stops responding.
There were no commits or active maintainers in the last three months, and the repository's last push was about 19 months ago; this supports the concern that maintenance has slowed substantially.
The repository uses Composer, appropriate for this package, but has no security scanning tools. The missing scanning is a modest hygiene gap rather than evidence of abandonment.
The repository has no security policy, leaving vulnerability-reporting expectations unclear for a package handling OAuth integration.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
socialiteproviders/manager Version ~2.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.