Risky to adopt: the package has had no release or repository activity since July 2016, leaving it effectively unmaintained. It includes tests and is not marked deprecated or archived, but the missing license and README add avoidable adoption risk.
38%
Total Score
0
100
67
100
The latest release was published in July 2016, and there have been no releases in the last 12 months despite the package being more than 10 years old. This is strong evidence of abandonment for a dependency.
The repository recorded zero commits and zero active maintainers in the last three months, consistent with the release history showing no activity since July 2016. The repository being unarchived does not compensate for the absence of actual maintenance.
Neither the package metadata nor the repository contains a license, leaving developers without clear permission to use, modify, or redistribute the package. This is a genuine adoption concern.
The package contains tests and the repository also has tests, providing some evidence of basic project quality. The missing README is a transparency and integration gap for a library, while the missing changelog is not concerning because changelogs belong in the source project and may be absent from small projects.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
barryvdh/laravel-snappy Version ^0.3.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.