Tests, licensing, and a readme make integration clearer. The project is too new to establish dependable maintenance, so pin this exact version and reassess future releases.
42%
Total Score
75
100
67
67
The package is flagged as borrowing the identity of laravel/pail, which has about 9.5 million monthly downloads versus 10 for this package. Although artifact overlap is zero and the README does not identify it as a copy, the identity signal is strong enough to create severe adoption risk.
The package is less than one day old, with four releases in that period and a median interval of about 2 hours. This shows active initial publishing but provides no long-term maintenance track record.
There were no commits and no active maintainers in the three-month activity window. Because the package itself was created less than one day ago, this is mainly a lack of history rather than confirmed abandonment.
The repository has zero stars, forks, and watchers. For a package published less than one day ago this is weak supporting evidence, not an independent abandonment verdict.
Composer build tooling is present, but no repository security scanning tool was detected. This is a modest transparency and hygiene gap rather than a dependency-blocking issue.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
illuminate/support Version ^13.0 | — | — |
illuminate/database Version ^13.0 | — | — |
laravel-tipi/support Version ^1.0 | — | — |
laravel-tipi/localization Version ^0.1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.