The repository is organized, tested, and backed by an active organization; dependencies are modest and install scripts are absent. Confirm the intended license before adopting.
67%
Total Score
75
81
75
The manifest declares MIT, but the artifact and repository license file are detected as GPL-2.0. This is a material licensing mismatch that should be resolved before adoption.
The package has 32 releases over about four years, but none in the last 12 months; the latest registry release is more than a year old. This suggests slower maintenance despite a historically regular cadence.
The repository had no commits and no active maintainers in the last three months. A recent push date and organization backing provide some context, but do not replace current activity.
Composer build tooling is present, but no security scanning tool was detected. This is a modest transparency and maintenance gap, not evidence that the package is unsafe.
The linked repository has no published security policy. That limits disclosure guidance for a library integrated into larger applications.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
eveseat/web Version ^5.0 | — | — |
eveseat/eveapi Version ^5.0 | — | — |
eveseat/services Version ^5.0.7 | — | — |
laravel/framework Version ^10.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.