The source includes a substantial test suite, a clear MIT license, and a security policy. Its automated build is complete but uses three unpinned actions, so maintenance and update confidence remain limited.
62%
Total Score
88
100
89
100
This package has made only one release, 102 days after its initial publication, so there is little evidence of an established release cadence.
There were no commits and no active maintainers in the last three months. Because the project is only 102 days old, this is a meaningful but not yet conclusive maintenance concern.
The repository uses Composer, but no security scanning tools are configured. That is a hygiene gap rather than evidence that the release is unsafe.
The single workflow was fully analyzed with no dangerous triggers, untrusted checkouts, script injection, or audit findings. However, all three action references are unpinned, leaving avoidable build-reproducibility and update risk.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
illuminate/support Version ^12.0|^13.0 | — | — |
codezero/browser-locale Version ^3.0 | — | — |
codezero/php-url-builder Version ^1.0 | — | — |
codezero/composer-preload-files Version ^1.0 | — | — |
parfaitementweb/laravel-uri-translator Version ^3.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.