The MIT license, detailed README, changelog, and 45-release history make the package easy to assess. Its small repository footprint and missing security policy add little reassurance. Pinning this version leaves you with an unmaintained dependency.
46%
Total Score
50
75
75
The package has had no release in more than five years, despite 45 releases across its earlier history. That long gap is strong evidence of abandonment risk.
The repository recorded zero commits and zero active maintainers in the last three months, consistent with the release history's extended inactivity.
There is one open issue, but no new or closed issues and no pull-request activity in the last month. This provides no meaningful sign of active support.
The project uses Composer for builds, which is appropriate for a Packagist PHP package, but it has no detected security scanning tools.
The repository is not archived, but its last push was over five years ago, so its unarchived status offers little evidence of current maintenance.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
symfony/intl Version ^4.0 | — | — |
laravel/framework Version >=5.5 | — | — |
laravelium/sitemap Version ^2.0|^3.0|^6.0|^7.0 | — | — |
dereuromark/media-embed Version ^0.4.1 | — | — |
dannyvankooten/laravel-vat Version ^2.0.4 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.