The MIT license, tests, README, and release notes make the template easier to inspect and adopt. Its repository is not archived and the package is not deprecated, but those positives do not offset the thin maintenance record for a production dependency.
35%
Total Score
75
100
78
83
The package has only one release, published over eight years ago, with no releases in the last 12 months. That is strong evidence of abandonment risk for a dependency.
There are no open issues or pull requests and no issue or pull-request activity in the measured month. Combined with the single-release history, this provides no evidence of an active maintenance channel.
The repository has zero stars and zero forks, providing little supporting evidence of community adoption. Popularity is only secondary evidence, so this modestly reinforces the maintenance concern rather than deciding it.
Composer is used as the build tool, but no security-scanning tooling was detected. This is a hygiene gap, not a severe risk, and it adds only modest concern alongside the stale maintenance record.
The repository has no security policy, reducing transparency about vulnerability reporting and response. This matters more for a framework-based project but remains secondary to the lack of recent maintenance.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
laravel/tinker Version ~1.0 | — | — |
fideloper/proxy Version ~3.3 | — | — |
laravel/framework Version 5.5.* | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.