Its README, repository tests, and MIT license provide useful integration and legal clarity. The workflow audit found no dangerous findings, although its three action references are unpinned.
15%
Total Score
0
67
100
Packagist marks the entire package as abandoned and names always-open/laravel-model-auditlog as its replacement. This is a direct adoption risk rather than a cosmetic metadata gap.
The latest release was published in February 2021, with no releases in the following 5 years and 7 months. That strongly indicates the package is no longer maintained for current consumers.
The repository recorded zero commits and zero active maintainers during the last 3 months, consistent with the long release hiatus. There is no provided activity signal that compensates for this inactivity.
The single workflow was fully analyzed with no dangerous audit findings, untrusted checkouts, or script injections. All 3 action references are unpinned, which is a supply-chain hygiene caution but not severe enough to outweigh the maintenance evidence.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
awobaz/compoships Version ^2.0.3 | — | — |
laravel/framework Version ^8.0 | — | — |
fico7489/laravel-pivot Version ^3.0.1 | — | — |
orisintel/laravel-process-stamps Version ^3.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.