SeAT fork to add the very special plus, to make seat even better.
72%
Total Score
100
100
89
50
Four install and update lifecycle scripts are present. They are normal for a Laravel application package but add execution surface during Composer operations.
The repository has only 1 star and 1 fork, so external adoption is limited. Popularity is supporting evidence rather than a health verdict, and the activity signals provide stronger evidence here.
Composer build tooling is present, but no security-scanning tool was detected. That leaves a modest transparency and maintenance gap.
The repository has no security policy. This weakens vulnerability-reporting transparency, although active commits and releases partly compensate for the gap.
All 12 analyzed action references are unpinned, and a high-confidence finding reports a GitHub App token inheriting blanket installation permissions; an additional workflow installs a package outside a lockfile. No untrusted checkout or script-injection path was found, limiting the impact to caution rather than a severe verdict.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
seatplus/web Version ^5.0 | — | — |
laravel/tinker Version ^3.0 | — | — |
symfony/process Version ^7.0 | — | — |
guzzlehttp/guzzle Version ^7.2 | — | — |
laravel/framework Version ^13.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.