Healthy and actively maintained, with a long release history and a recently active organization-backed repository. Review its relatively broad runtime dependency set and lack of a published security policy before adopting it in a critical application.
86%
Total Score
100
50
94
83
The package declares 15 runtime dependencies, including framework, media, mail, caching, and search components, plus development-oriented tooling such as Debugbar and PHP CS Fixer. This broad runtime surface increases upgrade and compatibility work, though it is coherent with a full CMS package.
Composer build tooling is present, but no security scanning tools were detected. The absence of automated scanning reduces transparency around dependency and source risks, even though it is not evidence of abandonment.
No security policy was found in the source repository. For a CMS handling users, media, and access tokens, this is a genuine transparency gap for reporting and maintenance of security issues.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
laravel/ui Version ^4.5 | — | — |
laravel/sanctum Version ^4.0 | — | — |
laravel/framework Version ^13.0 | — | — |
silber/page-cache Version ^1.1 | — | — |
intervention/image Version ^4.1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.