Healthy and actively maintained, with frequent releases, a working source repository, and tests. The main caveats are that all recent commits come from one maintainer and the repository lacks a security policy and explicit workflow permissions.
78%
Total Score
75
100
89
63
The package defines four install- and update-time Composer lifecycle scripts. These are common for a Laravel application starter kit but increase installation complexity and should be reviewed before adoption.
One contributor made 100% of the 30 recent commits. For this individually owned project there is no organizational backing shown to offset the resulting single-maintainer continuity risk.
The repository had 30 commits in the last three months, showing active work. All 30 were made by one maintainer, so maintenance capacity is concentrated.
The repository has only 1 star and no forks or watchers. This is weak supporting evidence and suggests limited external validation, but popularity alone does not make a small actively maintained package unsafe.
Composer build tooling is present, but no security scanning tool was detected. The build setup is established, while automated security coverage is limited.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
laravel/tinker Version ^3.0.2 | — | — |
laravel/fortify Version ^1.39.0 | — | — |
laravel/framework Version ^13.30.1 | — | — |
laravel/wayfinder Version ^0.1.21 | — | — |
nunomaduro/essentials Version ^1.2.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.