The package includes a clear README, tests and a changelog in its repository, with matching MIT licensing and organization backing. Security scanning is absent, and the repository has had no commits in the last three months, so maintenance should be watched.
68%
Total Score
83
100
88
The repository recorded no commits and no active maintainers in the last three months. This is a meaningful maintenance concern, although the release history shows recent package publication.
Composer build tooling is present, but no security-scanning tool was detected, leaving a modest repository hygiene gap.
Version 0.5.1 is not a prerelease and recent releases contain no prerelease versions, but the package remains below a stable major version and may still change incompatibly.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
statamic/cms Version ^6.0 | — | — |
illuminate/contracts Version ^11.0||^12.0 | — | — |
spatie/laravel-package-tools Version ^1.16 | — | — |
pixelfear/composer-dist-plugin Version ^0.1.5 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.