The MIT license, clear README, changelog, and organization-backed repository provide useful transparency. It is a brand-new release with no recorded commit activity yet, and both workflow action references are unpinned.
62%
Total Score
83
100
88
50
This is the first release and the package is 0 days old, so there is no release history or cadence demonstrating sustained maintenance.
The repository records 0 commits and 0 active maintainers over the last 3 months; because the project is only 0 days old, this is mainly missing history rather than evidence of abandonment, but it limits confidence.
Composer build tooling is present, but no security scanning tools are reported, leaving a modest repository hygiene gap.
No repository security policy was found, reducing transparency for reporting and handling vulnerabilities in an installer package.
The workflow audit completed cleanly with no dangerous triggers, untrusted checkouts, or audit findings. However, both action references are unpinned, so their contents can change without a reviewed commit.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
livewire/livewire Version ^3.0|^4.0 | — | — |
illuminate/support Version ^10.0|^11.0|^12.0|^13.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.