The package is clearly documented, tested, and permissively licensed. Its small project footprint and limited workflow/security hygiene leave little evidence of ongoing support; pin this version only if you can accept that maintenance risk.
48%
Total Score
0
81
67
There were no commits and no active maintainers in the last three months, indicating that development activity has stalled and increasing abandonment risk.
The package is about 359 days old but has only two releases, both concentrated at the start of its history, providing limited evidence of sustained maintenance.
Composer build tooling is present, but no security scanning tools were detected, leaving a modest repository-hygiene gap.
The linked repository is not archived, but its last push was nearly a year ago, which reinforces the maintenance concern when considered with zero recent commits.
The repository has no security policy, reducing transparency about how vulnerabilities should be reported and handled.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
laravel/framework Version ^10.0|^11.0|^12.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.