The package is small and clearly scoped, with a matching source repository, MIT licensing, and minimal dependencies. Its long pause and lack of tests or security process make future fixes and review less certain.
62%
Total Score
50
100
83
83
Only one registry maintainer account is listed. Because the linked project is user-owned rather than organization-backed, this leaves a thin publishing base and increases continuity risk.
The registry namespace and repository owner both resolve to the same user account, providing consistent ownership evidence. The user-owned project does not provide the continuity assurances of organization backing.
The latest release was 2 years ago, with 0 releases in the last 12 months. Earlier releases were reasonably paced, but the current pause lowers confidence in ongoing maintenance.
The repository has 0 stars and 0 forks, with 1 watcher. Popularity is only supporting evidence, but these numbers provide little evidence of a broad user or contributor base.
Composer is used for builds, but no security scanning tools are present. For a small package this is a transparency and maintenance gap rather than a severe risk.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
laravel/framework Version >=8.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.