The package has clear documentation, tests, a changelog, and a permissive license. Its small maintainer base and unpinned workflow actions leave meaningful continuity and build-reproducibility concerns.
72%
Total Score
67
50
94
50
Six runtime dependencies create a moderate dependency surface, including framework and database-related packages, but the profile is not unusually large for a Laravel package.
The registry and repository share the same user owner, so there is no visible ownership mismatch; unlike an organization-owned project, this does not compensate for the concentrated contributor activity.
All 34 commits in the last 3 months came from one contributor, so maintenance continuity depends entirely on a single active account.
Composer is used for builds, but no security-scanning tools were detected, leaving repository-level security checks less visible.
The repository has no security policy, which reduces transparency about vulnerability reporting and response expectations.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
illuminate/support Version ^12.0 | — | — |
facade/ignition-contracts Version ^1.0.2 | — | — |
risetechapps/has-uuid-for-laravel Version ^1.2 | — | — |
tpetry/laravel-postgresql-enhanced Version ^3.7.0 | — | — |
risetechapps/monitoring-for-laravel Version ^4.0.1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.