Documentation and automation quality leave meaningful gaps for adopters. The repository is active and organization-backed, but maintenance depends on one recent contributor and the package remains an unreleased alpha.
56%
Total Score
83
60
67
This package has had only one release, published over four years ago, with no releases in the last 12 months. Recent repository activity helps, but the registry release itself is not being refreshed.
The package includes a substantial README and changelog, and the repository has tests and a changelog. However, the README still contains template text rather than a complete package explanation, reducing adoption transparency.
All 7 recent commits came from one contributor, creating a concentrated maintenance dependency. Organization ownership provides some backing but does not remove the single-contributor risk.
The linked repository has no security policy, leaving vulnerability reporting and response expectations undocumented.
The assessed version is still 0.0.1-alpha and all recent releases are prereleases, which indicates an immature public contract and higher compatibility risk.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
illuminate/contracts Version ^9.0 | — | — |
spatie/laravel-package-tools Version ^1.9.2 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.