The package includes a README, changelog, tests, and a clear repository match, which make adoption easier. Its license metadata conflicts with the MIT license file, and the repository has no security policy.
45%
Total Score
0
71
75
Only two releases were published, both in November 2023, with none in the following 12 months. This long release gap is a substantial maintenance concern for a framework integration.
The repository recorded zero commits and zero active maintainers during the last three months, consistent with the absence of releases since November 2023. This indicates a high abandonment risk.
The artifact contains a license file and the repository also has one, but the manifest declares WTFPL while the detected license is MIT. The package is licensed, yet the mismatch reduces transparency and should be resolved.
The repository has zero stars and watchers and one fork. Popularity is only supporting evidence, but these numbers provide little external evidence of sustained use or review.
The repository has no security policy. For a package that integrates with a web application framework, this leaves vulnerability-reporting expectations unclear.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
orchid/platform Version ^14.0 | — | — |
laravel/framework Version ^10.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.