The MIT license, clear README, and release notes make adoption understandable. No security scanning and six open issues add maintenance uncertainty for a package with a small, user-owned project.
40%
Total Score
25
79
75
The package has made no releases in more than 8 years, despite five releases in its first year; this is strong evidence of abandonment for a framework integration.
The repository has had zero commits and zero active maintainers in more than 7 years, with no recent activity to offset the stale release history.
Six issues remain open, while no issues or pull requests were opened or closed in the last month; this reinforces the lack of active maintenance.
Composer build tooling is present, but no security-scanning tools were detected, leaving the project without visible automated security checks.
The repository has no security policy, which weakens vulnerability-reporting transparency; this is a hygiene concern rather than proof that the package is unsafe.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
laravel/framework Version ~5.4 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.