The package is clearly licensed, documented, and has release notes for this version, which supports adoption. The repository has no security scanning or security policy, so ongoing maintenance depends heavily on the single publisher.
52%
Total Score
50
100
88
75
The package has 11 releases over roughly seven years, but none in the last 12 months; its latest release was about two years ago. This is a meaningful maintenance concern, although the established release history provides some maturity evidence.
There were zero commits and zero active maintainers in the last three months. Combined with no release in about two years, this points to stalled maintenance.
Composer is used for builds, but the repository reports no security scanning tools. That weakens automated oversight, though it is not by itself evidence that the package is unsafe.
The repository has no security policy. This limits transparency about vulnerability reporting and response expectations for a package that handles Salesforce credentials and data.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
laravel/framework Version ^9.0|^10.0|^11.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.