The organization-backed repository has a complete source tree, a declared MIT license, and only one runtime dependency. Maintenance evidence is mixed: the latest release is current, but only one release appeared in the last year and no commits landed in three months; the missing README and security policy add smaller gaps.
65%
Total Score
83
100
75
83
The package has no README, tests, or changelog, which is a transparency and consumer-documentation gap for a Laravel module. Missing tests and changelog in the published artifact are normal packaging practice, but the absent README still matters to consumers.
The package has 41 releases over about 6 years and a release today, but only one release in the last 12 months. That indicates a mature history with currently sparse ongoing release activity.
No commits and no active maintainers were recorded in the last three months. The current release and repository push provide some compensating evidence, but sustained development activity is not demonstrated.
The repository name does not exactly match the package name, and the README could not be checked for a package mention. The organization and repository naming context provide some compensation, but package ownership is less transparent.
Composer is used as a build tool, but no security scanning tools are configured. The missing scanning is a modest hygiene gap rather than evidence of abandonment.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
refineddigital/cms Version ^1.7|dev-master | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.