Healthy and suitable to use, with one maintenance caveat: the project has a long release history, strong Laravel organization backing, tests, release notes, and an unarchived repository. However, no commits were recorded in the last three months, so ongoing maintenance should be watched.
76%
Total Score
88
100
100
80
One workflow uses pull_request_target, which warrants review because that event can run with elevated repository context. No untrusted checkouts or script-injection patterns were detected, limiting the concern.
No commits and no active maintainers were recorded during the last three months, which is a genuine maintenance concern despite recent releases and a repository push in July.
All workflows declare top-level permissions; three are read-only and three request write access. The explicit declarations are positive, although write access increases the impact of workflow mistakes.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
laravel/fortify Version ^1.20 | — | — |
symfony/console Version ^7.0|^8.0 | — | — |
illuminate/console Version ^11.0|^12.0|^13.0 | — | — |
illuminate/support Version ^11.0|^12.0|^13.0 | — | — |
mobiledetect/mobiledetectlib Version ^4.8.08 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.