The package lacks tests and a security policy, which limits confidence for a web-based command runner. It is clearly licensed, documented, linked to a matching repository, and has a stable release, but recent maintenance activity is absent.
58%
Total Score
50
100
78
75
A substantial README and release for this version improve consumer transparency. The absence of tests and a changelog in the published artifact is normal packaging practice, while the repository also reports no tests, limiting verification.
The repository is owned by an individual rather than an organization, so the project has a narrower visible backing structure and potentially less maintenance capacity.
There are 3 releases over about six months, with the latest released about five months before collection; the early release cadence is reasonable, but recent publishing appears to have stopped.
The repository has no commits and no active maintainers in the last three months. This is the clearest maintenance concern, especially alongside the gap since the latest release.
The repository has zero stars, forks, and watchers. This is weak supporting evidence for maturity, but popularity alone does not establish that the package is unsafe to adopt.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
laravel/nova Version ^5.0 | — | — |
symfony/process Version ^7.0 | — | — |
laravel/framework Version ^12.0|^13.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.