Healthy and actively maintained, with extensive release history and clear source documentation. The main caveats are that all recent commits come from one contributor and the repository has no security policy or scanning tools.
76%
Total Score
63
50
89
88
The package has 11 runtime dependencies, including Laravel and several related packages from the same publisher. This is substantial integration surface for a core CMS package, but it is consistent with the package's broad framework and platform role.
The package and repository are both owned by the same individual account rather than an organization. That matches the single-maintainer activity pattern but provides no organizational handoff capacity.
One contributor made all 138 commits in the last three months, leaving a concentrated maintenance dependency on a single person. The active commit volume is a positive, but it does not remove the continuity risk.
There are no open issues or pull requests and no issue or pull-request activity in the last month. This is not inherently unhealthy, but it provides little evidence of community review or support.
The repository has zero stars and forks and only one watcher. Popularity is supporting evidence rather than a verdict, but these counts provide little independent evidence of community adoption.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
fakerphp/faker Version ^1.23 | — | — |
laravel/sanctum Version ^4.1 | — | — |
laravel/framework Version ^13.0 | — | — |
laravel/socialite Version ^5.26 | — | — |
spatie/laravel-permission Version ^6.21 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.