The package is clearly documented and has a stable release, but its maintenance record is still very short. No repository security scanning or security policy is visible, so future upkeep and vulnerability response remain uncertain.
62%
Total Score
83
100
83
83
The package is only 100 days old and has two releases, both published on the same day, so there is limited evidence of sustained maintenance.
The repository had zero commits and zero active maintainers in the past three months, leaving no recent evidence that maintenance is continuing after the initial release.
The repository has no stars, forks, or watchers. This is weak supporting evidence for maturity, but popularity alone does not make a small package unsafe.
Composer build tooling is present, but no security scanning tools were detected, leaving vulnerability detection less transparent.
The repository has no security policy, so the process for reporting and handling vulnerabilities is not documented.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
guzzlehttp/guzzle Version ^7.0 | — | — |
laravel/framework Version ^11.0|^12.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.