The project has clear documentation, extensive tests, and a steady release history. Recent maintenance is concentrated in one contributor, while workflow actions are unpinned and no security policy is provided.
68%
Total Score
50
88
67
The repository is owned by an individual account rather than an organization, so the single-contributor maintenance concentration is not offset by visible organizational backing.
One contributor made all recent commits, leaving maintenance dependent on a single active developer.
Only 1 commit was recorded in the last 3 months, so current maintenance activity is limited despite the recent release cadence.
The repository uses Make and Composer tooling, but no security scanning tools were detected, leaving security checks less visible.
The repository has no published security policy, reducing clarity about how vulnerabilities should be reported and handled.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
nesbot/carbon Version ^2.0|^3.0 | — | — |
spatie/invade Version ^2 | — | — |
phpunit/phpunit Version ^11 | — | — |
laravel/framework Version ^8|^9|^10|^11|^12|^13 | — | — |
spatie/laravel-data Version ^4 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.