The repository includes tests, a substantial README, release notes, and organization backing. All four workflow actions are unpinned, and the project has no security policy or security scanning yet.
68%
Total Score
75
100
79
75
This is the package's first release, published 0 days ago, so there is not enough release history to demonstrate sustained maintenance. Its freshness is not evidence of abandonment, but it limits maturity evidence.
There have been no commits or active maintainers in the measured three-month window. Because the package was created today, this primarily shows that maintenance history is unestablished rather than proving abandonment.
Composer build tooling is present, but no security scanning tools were detected. That is a modest transparency and hygiene gap for a package handling conversations, retrieval, spend, and masking.
The repository has no security policy. This weakens the project's vulnerability-reporting transparency, though it is not by itself evidence that the release is unsafe.
The release is v0.1.0 rather than a stable major version, which indicates an early API and greater likelihood of breaking changes. It is not marked as a prerelease, partially offsetting that concern.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
laravel/ai Version ^0.11 | — | — |
illuminate/console Version ^11.0|^12.0|^13.0 | — | — |
illuminate/support Version ^11.0|^12.0|^13.0 | — | — |
illuminate/database Version ^11.0|^12.0|^13.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.