Tests, release notes, and a clear license provide useful evidence of a real project. Its long inactivity and weak workflow hygiene make future fixes and trustworthy updates uncertain.
43%
Total Score
33
100
71
75
The package has had only 3 releases, all with the latest on May 15, 2020, and none in the last 12 months. This is strong evidence of prolonged inactivity for a dependency.
There were 0 commits and 0 active maintainers in the last 3 months. Combined with the old latest release, this materially raises abandonment risk.
The repository is owned by an individual rather than an organization, so the single registry maintainer reflects a genuinely thin project backing rather than normal organizational publishing hygiene.
There were no new or closed issues and no new or merged pull requests in the last month, while 3 pull requests remain open. This suggests little current project attention.
Composer build tooling is present, but no security scanning tools are configured. That is a hygiene gap rather than evidence that the package is unsafe.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
laravel/ui Version ^2.0 | — | — |
laravel/framework Version ^7.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.