Clear documentation, tests, and release notes make integration easier. The repository is small and has no security scanning, while all three workflow action references are unpinned.
67%
Total Score
50
100
83
63
A post-autoload-dump script is present, which adds install-time behavior and warrants awareness, but this signal alone does not indicate a serious dependency risk.
The package is only a few hours old and has two releases, so there is not yet enough history to establish long-term maintenance reliability.
There were no commits or active maintainers recorded in the last three months, but the repository was updated very recently and the package is newly published, so this is a limited maintenance warning rather than abandonment evidence.
The repository has no stars, forks, or watchers, offering no external maturity evidence; this is expected for a package released only a few hours ago.
Composer build tooling is present, but no security scanning tools were detected, leaving a modest transparency and maintenance gap.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
filament/filament Version ^4.0 || ^5.0 | — | — |
spatie/laravel-package-tools Version ^1.15 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.