Clear documentation, tests, and release notes make integration easier. The package also has a clear MIT license and no install-time scripts, while limited security-process evidence warrants routine ownership review.
79%
Total Score
67
50
94
75
The package declares 27 runtime dependencies, including framework, database, HTTP, and monitoring components. This is a sizable integration surface for a Laravel module and adds maintenance exposure, though it fits the package's broad functionality.
One contributor made all commits in the last 3 months, concentrating recent maintenance in a single person. Organization ownership provides some handoff capacity, but no second active contributor is shown.
Only one commit was recorded in the last 3 months, showing limited recent development activity despite the recent registry release. This is a maintenance caution, not evidence of abandonment by itself.
Composer build tooling is present, but no security-scanning tool is reported. The missing scanning evidence is a modest process gap rather than a direct dependency-health failure.
The repository has no security policy. That reduces transparency around vulnerability reporting and response, although it does not by itself show that the package is unsafe to depend on.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
league/uri Version ^7.5 | — | — |
symfony/yaml Version ^7.2 | — | — |
doctrine/dbal Version ^3.1 | — | — |
predis/predis Version ^3.0 | — | — |
laracasts/flash Version ^3.2 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.