The MIT declaration conflicts with the GPL-3.0 license file, and the project has no security policy. Readme, automated tests, release notes, and a matching repository provide useful transparency, but the dependency set is substantial for a small project.
52%
Total Score
50
50
80
75
The package declares 21 runtime dependencies, including a large Laravel and Filament application stack. That raises upgrade and maintenance complexity, although the dependencies are consistent with the package's application-oriented purpose.
The artifact declares MIT and includes a license file, but the detected license text is GPL-3.0, creating an unresolved licensing mismatch. The repository also has a license file, so this is a caution rather than an absence of licensing.
The package has only three releases and none in the last 12 months, despite being about 16 months old. This indicates a meaningful maintenance concern, though the release intervals were initially regular.
The repository recorded no commits and no active maintainers in the last 3 months. That weakens confidence in ongoing maintenance even though the repository was pushed more recently than that window.
No security policy was found in the repository. For an application package with authentication, roles, and access tokens, this reduces transparency around vulnerability reporting.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
dedoc/scramble Version ^0.12.10 | — | — |
laravel/tinker Version ^2.9 | — | — |
laravel/sanctum Version ^4.0 | — | — |
hasnayeen/themes Version * | — | — |
coolsam/flatpickr Version ^4.1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.