MIT licensing, a matching repository, and a readable package make its provenance clear. Its age and lack of recent maintenance make future Laravel compatibility and fixes unlikely.
38%
Total Score
50
75
75
The package has had one release, with no releases in about 10 years. That strongly indicates abandonment and outweighs its otherwise stable 1.0.1 version.
There were no commits and no active maintainers in the past three months, consistent with a repository that has been inactive for about 10 years. This is a substantial abandonment concern.
The repository has zero stars and forks and only one watcher. Popularity is supporting evidence rather than decisive, but these counts provide no meaningful adoption signal to offset the inactivity.
Composer is used as the build tool, but no security scanning tools are present. For an old, inactive package this leaves a modest transparency and maintenance gap.
The repository has no security policy. This is a transparency gap, though it is secondary to the much stronger evidence of long-term inactivity.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
maknz/slack Version ^1.7 | — | — |
guzzlehttp/guzzle Version ~5.3|~6.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.