Risky to adopt because the last registry release was over five years ago and the repository shows no recent activity. It remains licensed, documented, non-archived, and correctly linked, but its maintenance appears effectively dormant.
45%
Total Score
33
100
72
83
The package has had no release in over five years and none in the last 12 months, despite five releases overall. This is strong evidence of abandonment risk, although the package reached a stable 1.0.11 release.
The repository recorded zero commits and zero active maintainers in the last three months, consistent with the long release gap. No provided signal shows current maintenance activity to compensate.
Only one registry publishing account is listed. Because the repository is user-owned rather than organization-owned, this narrow publisher base adds some continuity risk, especially alongside the absence of recent activity.
The source repository is owned by a user account rather than an organization, so there is no visible organizational backing to compensate for the single publisher and dormant activity.
The repository has nine stars and three forks, indicating a small user base. Popularity is supporting evidence only and does not independently make the package unsafe, but it offers little external evidence of active maintenance.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
encore/laravel-admin Version 1.8.* | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.