The MIT license, focused dependencies, and README make its intended Laravel integration clear. Security scanning and a security policy are absent, while the small public audience offers little maintenance assurance.
42%
Total Score
50
100
63
75
The package has made only 3 releases, with none in the last 9 years; its last release was in July 2017. This is strong evidence of abandonment risk despite the early release cadence.
There were no commits and no active maintainers in the last 3 months, consistent with the repository having been inactive since 2017. This materially raises abandonment risk.
The repository has 1 star, 0 forks, and 3 watchers. Low popularity is supporting evidence rather than a verdict, but it provides little external assurance for a package already showing no recent activity.
Composer is used as the build tool, but no security scanning tools are configured. The missing scanning is a hygiene gap rather than evidence of maliciousness.
The linked repository is not archived, which is a positive sign, but its last push was in July 2017. The non-archived status does not compensate for the prolonged inactivity.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
laravel/framework Version 5.3.* | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.