The project has no recent users or security policy, leaving little evidence of ongoing support. Its tests, documentation, and clear MIT licensing are useful, but the package targets an old Laravel generation.
38%
Total Score
38
50
72
50
The package has made no release in more than nine years, with all three releases clustered on July 12, 2017. That is strong evidence of abandonment for a framework integration.
There were zero commits and zero active maintainers in the last three months, matching the last push from July 2017. This indicates that maintenance has stopped.
The runtime profile is small, with PHP and Laravel as the two runtime dependencies, limiting dependency complexity. It still ties consumers to an old Laravel generation.
One registry maintainer is consistent with a small user-owned project, but it provides little redundancy when the project shows no recent activity.
The repository is owned by an individual account rather than an organization, so there is no visible organizational backing to compensate for the single-maintainer and inactivity concerns.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
laravel/framework Version ^5.4 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.