The package is clearly licensed and its repository matches the package, with a documented release and no install-time scripts. Its very small project footprint, absent security policy, and prolonged lack of activity increase maintenance risk.
58%
Total Score
75
100
78
88
One registry maintainer is listed, matching the individual repository ownership. This is a thin maintainer base and increases continuity risk, though it is consistent with the project's small scope.
The package has only 4 releases and none in the last 12 months; its latest release was about 3 years ago. This indicates limited and currently inactive maintenance, though the project is not deprecated.
There were no commits and no active maintainers in the last 3 months, consistent with the last push in September 2023. This is the strongest evidence of current maintenance risk.
The repository has 0 stars and 0 forks, with 1 watcher. This offers little community validation, but popularity is supporting evidence and does not by itself make a small package unsafe to adopt.
Composer is used as the build tool, but no security scanning tooling is present. The missing scanning is a hygiene gap, not evidence that the package is unfit to depend on.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
laravel/framework Version >=10.10 | — | — |
luminee/laravel-base Version >=0.2.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.