Tests, an MIT license, a matching organization-owned repository, and no install scripts provide useful safeguards. The README's usage section is unfinished, and no security policy or scanning is present.
40%
Total Score
50
64
75
This package has only one release, published over eight years ago, with no releases in the last 12 months. That is strong evidence of abandonment risk despite the repository still being available.
The repository recorded no commits and no active maintainers in the last three months, consistent with the long release gap. This substantially weakens confidence in ongoing maintenance.
The artifact includes a README and tests, and the exact version has a GitHub release; the missing changelog is normal packaging practice and is not a concern by itself. The README's usage and Laravel sections remain unfinished, limiting consumer guidance.
The repository has zero stars and forks and one watcher, so there is little visible external adoption to offset the maintenance concerns. Popularity is supporting evidence, not a verdict on its own.
Composer build tooling is present, but no security-scanning tooling was detected. This is a modest hygiene gap rather than evidence that the package is unsafe.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.