The MIT license and lack of install-time scripts reduce legal and installation concerns. A single registry maintainer and an artifact README that describes a different dependency leave little evidence about ongoing support.
46%
Total Score
50
100
70
75
The package has only one release, published about 18 months ago, with no releases in the last 12 months; this leaves maintenance and compatibility work unproven.
Only one registry publishing account is listed, leaving a thin observable publishing base and increasing continuity risk if that contributor stops maintaining the package.
The artifact includes the package source and configuration, but also bundles a very large vendor tree; this is less transparent and may complicate auditing and distribution.
The artifact contains a README, tests, and a changelog, but the README excerpt describes carbonphp/carbon-doctrine-types rather than this Laravel SDK, reducing consumer-facing documentation confidence.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
getbrevo/brevo-php Version ^1.0.2 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.