Usable with caveats: it is actively released, stable, licensed, and backed by a matching repository. The main concerns are a single active contributor, no tests or changelog, and limited security-process evidence.
72%
Total Score
67
100
88
75
Registry publishing access is held by one account. This is not evidence of abandonment by itself, but it leaves little publishing redundancy for a user-owned project.
A README is present, but neither the package nor repository includes tests or a changelog. This leaves maintenance and release verification less transparent for a reusable framework plugin.
All four recent commits came from one contributor, so maintenance depends heavily on a single person and has limited continuity if that contributor stops.
Composer build tooling is present, but no security-scanning tools are reported. The missing scanning process is a transparency gap, though it is not a health verdict by itself.
The repository has no security policy, leaving vulnerability reporting and response expectations unspecified.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
spatie/laravel-package-tools Version ^1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.