The package includes a substantial README, tests, changelog, MIT licensing, and a repository that matches its name. Its single-person ownership, no commits in the last three months, minimal adoption, and absent security policy leave maintenance and review capacity limited.
62%
Total Score
63
50
89
88
Nine runtime dependencies, including Laravel components and JWT authentication libraries, create meaningful compatibility and update surface area, though the profile is understandable for this package's scope.
Only one registry publishing account is listed, limiting publishing redundancy; this is not offset by organization backing because the repository owner is a user account.
The registry namespace and repository are associated with individual ownership rather than an organization, so there is no provided evidence of broader project backing.
There were zero commits and zero active maintainers in the last three months, a concrete sign that maintenance has currently stalled despite the recent release history.
One star, no forks, and no watchers indicate very limited independent adoption or external review. Popularity is supporting evidence, but this still reduces confidence in community validation.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
tymon/jwt-auth Version ^2.0 | — | — |
illuminate/http Version >=10.0 | — | — |
illuminate/mail Version >=10.0 | — | — |
illuminate/support Version >=10.0 | — | — |
illuminate/database Version >=10.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.