There is no repository security policy, and all three workflow actions are unpinned. Frequent releases, tests, documentation, and organization backing provide useful counterweight, but one contributor remains a continuity concern.
66%
Total Score
83
81
50
There have been 15 releases in 243 days, with a median interval of about 5.5 hours. The active cadence is positive, though the unusually rapid early release pace suggests a still-maturing project.
All 19 recent commits came from one contributor. Organization backing provides some handoff potential, but the observed maintenance base is still concentrated.
Composer build tooling is present, but no security scanning tools were detected. That weakens automated security hygiene for a package advertising security features.
The repository has no security policy, leaving no documented process for reporting or handling vulnerabilities in a security-relevant framework.
Version v0.1.14 is not yet at a stable major version, so compatibility may still change despite the release not being marked as a prerelease.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
laravel/framework Version ^12.0 || ^13.0 | — | — |
sourcetoad/enhanced-resources Version ^7.3 | — | — |
sourcetoad/rule-helper-for-laravel Version ^6.3 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.