The MIT license, tests, README, and single runtime dependency make the package straightforward to evaluate and integrate. Its small, matching repository is not archived, but limited security tooling and a narrow maintainer base reduce confidence in long-term support.
58%
Total Score
50
100
81
50
The package has only 4 releases since 2016, with no release in about five years and none in the last 12 months. That is meaningful evidence of slow maintenance, although the repository remains unarchived.
There were 0 commits and 0 active maintainers in the last 3 months. Combined with the old latest registry release, this leaves limited evidence of active maintenance.
Composer build tooling is present, but no security scanning tools were detected. This is a maintenance and transparency gap, not evidence of a security incident.
The repository has no security policy. That reduces transparency for reporting and handling vulnerabilities, though it does not by itself make the release unfit.
The assessed v0.1.3 release is not marked prerelease, but the package remains below a stable major version. This is a modest maturity concern rather than a severe dependency risk.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
laravel/framework Version 5.*|6.*|7.*|8.* | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.