The package is intentionally minimal and has no tests or security policy, while all recent commits come from one contributor. Its linked organization repository is active, but that does not offset the package-level maintenance concerns.
15%
Total Score
50
100
64
50
Packagist marks the entire package abandoned and explicitly directs users to pushinbr/pam-native-sync-laravel, making this release unsuitable for a new dependency.
The artifact has a README explaining the migration, but it has no tests or changelog. The missing tests are a modest transparency concern for a compatibility package, while the migration documentation partly compensates.
The package is only 27 days old and has two releases, both published within about 2 hours. That leaves too little release history to demonstrate sustained stability.
One contributor made all 3 commits in the last 3 months. Although the repository is organization-owned, the observed work remains concentrated in a single person.
The repository recorded 3 commits in the last 3 months, showing some recent activity, but this is limited evidence for long-term maintenance.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
pushinbr/pam-native-sync-laravel Version ^0.2 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.