The project is a small, user-owned package with no security policy, so maintenance capacity and oversight are limited. Its MIT license, README, and matching repository make the package transparent enough to inspect.
38%
Total Score
25
67
50
The package has had only one release, with no releases in about ten years. That strongly suggests the release is abandoned, even though it is a stable v1.0.0.
The repository recorded zero commits and zero active maintainers in the last three months, and its last push was about ten years ago. There is no observed maintenance activity to offset the age of the release.
There has been no issue or pull-request activity in the last month, while one issue remains open. This reinforces the lack of active maintenance, though it is less severe than the long release and commit gap.
The linked repository has no security policy. For a package that integrates into application models, this reduces transparency around vulnerability reporting and maintenance response.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
laravel/framework Version 5.3.* | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.