Add support for the USING directive in join constraints for Laravel query builder
55%
Total Score
caution
Usable with caveats: one release and nearly three years without commits limit confidence.
This is the package's only release, published nearly four years ago, with no releases in the last 12 months. That materially raises abandonment and compatibility risk.
The repository recorded no commits and no active maintainers in the last three months, consistent with a project that has seen little recent maintenance.
No security policy is present. This is a transparency gap, but it is a secondary concern for a small package and does not outweigh the maintenance evidence.
Version 0.1.0 is not a stable major release, so compatibility expectations are limited, although it is not marked as a prerelease.
All 9 analyzed action references are unpinned, and the audit found a high-confidence bot-condition issue in the Dependabot auto-merge workflow. The pull_request_target trigger has no untrusted checkout or script-injection sink, so this is a hygiene and automation risk rather than a severe standalone failure.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
illuminate/contracts Version ^9.0 | — | — |
spatie/laravel-package-tools Version ^1.9.2 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.