Tests, a usable README, and matching MIT licensing make the package transparent to adopt. There is little documented security practice, so support expectations should remain modest.
58%
Total Score
50
90
50
Only one registry publishing maintainer is listed, and the repository is owned by an individual rather than an organization. This leaves limited visible redundancy if that maintainer stops supporting the project.
The package has had no releases in the last 12 months, with the latest release on December 20, 2024. Its earlier five-release history shows initial activity but does not offset the current gap.
There are no open issues or pull requests and no issue or pull-request activity in the last month. This is consistent with a small, quiet project but provides little evidence of active support.
The linked repository has no security policy, leaving no documented process for reporting or handling vulnerabilities in an application that processes GitLab webhooks and Telegram credentials.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
predis/predis Version ^2.2 | — | — |
laravel/tinker Version ^2.8 | — | — |
laravel/sanctum Version ^3.3 | — | — |
guzzlehttp/guzzle Version ^7.2 | — | — |
laravel/framework Version ^10.10 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.