MIT licensing, a clear README, and a matching repository improve transparency. Unpinned workflow actions and no security policy leave maintenance hygiene weaker.
55%
Total Score
25
50
71
50
The package has had no release in nearly two years, despite 18 releases arriving in a short initial burst. This strongly lowers confidence in ongoing maintenance, though the repository remains available and unarchived.
There were no commits and no active maintainers in the last three months. Combined with the old latest release, this is strong evidence that maintenance has stopped or slowed sharply.
Six runtime dependencies, including Laravel, Livewire, and Laravel Modules, create meaningful compatibility and update obligations for this UI package. The profile is not unusually large, so this is a modest concern.
Composer post-install and post-update scripts run automatically during dependency operations. These scripts are common in PHP packages but increase the review surface for installation behavior.
The registry namespace and repository owner match, indicating a consistent ownership context. The owner is an individual account rather than an organization, so there is no demonstrated organizational maintenance buffer.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
laravel/framework Version ^11.9 | — | — |
livewire/livewire Version ^3.0 | — | — |
illuminate/support Version ^11.0 | — | — |
nwidart/laravel-modules Version ^10.0 | — | — |
larswiegers/laravel-maps Version ^0.18.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.