Recent releases and a substantial test-backed source tree provide useful context. The linked project has no commits in three months and does not clearly identify this package, so pinning it carries avoidable maintenance risk.
42%
Total Score
75
70
Packagist marks the entire package as abandoned, with no clear replacement beyond the same package name. Package-level abandonment is a severe dependency-health concern even though version 5.6.8 was released recently.
The repository recorded zero commits and zero active maintainers during the last three months. This indicates current maintenance has stalled despite the recent registry release.
The linked repository is named `roles`, while the assessed package is `rolemanager`, and its README does not mention the package name. That mismatch raises uncertainty about whether the repository is the authoritative source.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
laravel-enso/core Version ^12.0 | — | — |
laravel-enso/enums Version ^3.0 | — | — |
laravel-enso/forms Version ^5.0 | — | — |
laravel-enso/menus Version ^5.0 | — | — |
laravel-enso/users Version ^2.8 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.