The MIT license, active repository, and strong release cadence support continued maintenance. A single active contributor and no security policy leave limited independent oversight.
65%
Total Score
67
88
83
The package includes a README and tests, and the exact version has a GitHub release. However, its README explicitly says it is still under construction and not ready for use, which is a meaningful adoption concern.
All 3 recent commits came from one contributor, concentrating maintenance responsibility. Organization ownership provides some handoff capacity, but no second active contributor is shown.
The repository recorded 3 commits in the last 3 months, showing some recent activity, but the volume is modest for an actively evolving package.
The repository name matches the package, reducing the risk of an unrelated repository being used. The README does not mention the package, so repository-package linkage is slightly less transparent.
The repository has no published security policy, leaving no documented process for reporting or handling vulnerabilities.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
manogi/nova-tiptap Version ^2.0 | — | — |
spatie/laravel-tags Version ^4.3 | — | — |
spatie/nova-tags-field Version ^3.4 | — | — |
joshmoreno/nova-html-field Version ^0.1.0 | — | — |
owenmelbz/nova-radio-field Version ^1.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.