The repository is backed by an organization, includes tests, and has a documented release for this version. Its only registry release was 805 days ago, the version remains alpha, and no maintainers were active in the last three months; the repository also lacks security scanning and a security policy.
57%
Total Score
75
81
75
This is the package's only release, published 805 days ago, with no releases in the last 12 months. That indicates limited release maturity and raises abandonment concerns.
No commits or active maintainers were recorded in the last three months. Combined with the single old registry release, this materially lowers confidence in ongoing maintenance.
Composer build tooling is present, but no security scanning tools were detected. The missing scanning is a hygiene weakness rather than evidence that the release is unsafe.
The repository has no security policy. This limits transparency around vulnerability reporting, though it is a secondary concern for a starter application.
The latest version is still the prerelease 1.0.0-alpha.1, and all recent releases are prereleases. Consumers should expect an unfinished or changing release line.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
predis/predis Version ^2.2 | — | — |
laravel/tinker Version ^2.8 | — | — |
lunarphp/lunar Version ^1.0 | — | — |
laravel/sanctum Version ^3.3 | — | — |
guzzlehttp/guzzle Version ^7.2 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.