Usable with caveats: it is actively releasing and has a complete, licensed package, but it is only 29 days old and all eight recent commits come from one contributor. Treat it as an early-stage dependency and review its maintenance before relying on it heavily.
62%
Total Score
50
100
78
90
The registry namespace is associated with a personal repository owner rather than an organization, so the single-contributor maintenance concentration is not visibly backed by a larger team.
The package is only 29 days old, but it already has 19 releases, showing active development rather than abandonment. The very short history still limits confidence in its long-term maturity.
One contributor made all eight commits in the last three months, creating a meaningful single-maintainer continuity risk. There is no organization backing shown to compensate for that concentration.
There were eight commits in the last three months, despite the package being only 29 days old, which supports current maintenance. The activity is too recent to establish durable maintenance.
The repository has zero stars, forks, and watchers. For a package only 29 days old this is not evidence of abandonment, but it provides no additional maturity or community-support evidence.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
laravel/scout Version ^10.0 || ^11.0 | — | — |
guzzlehttp/guzzle Version ^7.0 || ^8.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.