The MIT license and focused dependency set are positives, but the project has only one star and no security policy. It offers little evidence of current support for a production dependency.
8%
Total Score
0
100
33
75
The package is reported to borrow the identity of laravel/sail, a far more established package, and its artifact has no overlap with that package. The identity-borrowing signal is nevertheless a severe supply-chain concern for consumers searching for the lookalike.
Packagist marks the entire package as abandoned, with no replacement named. This is a direct warning against taking a new dependency on the package.
The package has had no releases in nearly seven years, despite 43 historical releases. That long release gap strongly indicates abandonment.
There were zero commits and zero active maintainers in the last three months, consistent with the archived repository and lack of current maintenance.
The linked repository is archived and was last pushed in December 2019, so maintainers are not providing ongoing source updates.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
laravel-enso/core Version 4.6.* | — | — |
laravel-enso/enums Version 1.1.* | — | — |
laravel-enso/helpers Version 1.14.* | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.