A fully-fledged CSV import tool for Laravel Nova.
60%
Total Score
caution
Usable with caveats: recent maintenance is thin and workflow dependencies are unpinned.
The project has existed since April 2019 with 21 releases, but only one release appeared in the last 12 months. The recent release provides some evidence of maintenance, while the slower current cadence warrants caution.
There were no commits and no active maintainers in the last three months. Although a release occurred within the broader period, the current lack of repository activity raises abandonment risk.
The repository has no security policy. This does not show a vulnerability, but it reduces transparency about how security reports are handled.
v0.8.0 is a stable release rather than a prerelease, but the package remains below a stable major version. Consumers should expect more compatibility changes than with a mature 1.x package.
Both analyzed workflows completed without dangerous triggers, untrusted checkouts, or audit findings, but all two action references are unpinned. The missing top-level permissions blocks are acceptable on their own, so this is a limited reproducibility and supply-chain hygiene concern.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
laravel/nova Version ^4.0|^5.0 | — | — |
maatwebsite/excel Version ^3.1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.