The package has clear MIT licensing, a matching repository, readable installation guidance, and a changelog. Its single maintainer and absent security policy leave less coverage if maintenance problems arise.
58%
Total Score
25
80
75
The latest release was August 12, 2023, with no releases in the last 12 months despite six releases overall. This indicates a prolonged maintenance gap for the assessed version.
The repository recorded zero commits and zero active maintainers in the last three months, consistent with the release gap and raising abandonment risk.
Only one registry maintainer is listed, which limits publishing redundancy. The linked repository is user-owned rather than organization-backed, so there is no provided evidence of a broader maintenance team.
The repository has no security policy. This reduces transparency about vulnerability reporting and handling, although it does not by itself show that the package is unsafe.
The one workflow was fully analyzed with no audit findings or untrusted-trigger sinks, but both of its two action references are unpinned. That leaves avoidable build-integrity exposure.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
filament/filament Version ^3.0 | — | — |
spatie/laravel-package-tools Version ^1.10 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.