The package includes tests, release notes, and a focused dependency set. Solo ownership, no security tooling, and no commits in the last three months leave maintenance continuity less certain.
67%
Total Score
50
100
83
83
Only one registry account has publish access, creating a limited publishing and maintenance base; the linked repository is also owned by that individual.
The registry namespace and repository owner match, but the owner is an individual rather than an organization, so there is no demonstrated organizational backing to offset the thin maintainer base.
The package has 10 releases over nearly three years, but only one release in the last 12 months; this indicates a slower recent cadence without showing abandonment.
The repository recorded zero commits and zero active maintainers in the last three months, which is a meaningful recent maintenance gap despite the January release.
Composer build tooling is present, but no security scanning tools were detected, leaving security-process transparency limited.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
laravel/framework Version ^10.0|^11.0|^12.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.