Documentation, licensing, tests, and a security policy make the project transparent to adopt. Its small audience and unpinned container image add maintenance and build-reproducibility concerns.
52%
Total Score
0
69
100
The package has only two releases, with none in the last three years and five months; this is substantial evidence of stalled maintenance for a library dependency.
There were no commits and no active maintainers in the three months before collection, reinforcing the release-history evidence of an inactive project.
Seven stars and two forks indicate a small user and contributor base; this is supporting caution rather than evidence that the package is unusable.
Composer build tooling is present, but no security scanning tools were detected, leaving a modest transparency and maintenance gap.
The current release is v0.0.2 and is not a stable major release, so the API may still change or lack maturity despite not being marked prerelease.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
clue/ami-react Version ^1.1 | — | — |
illuminate/contracts Version ^8.37|^9.0|^10.0 | — | — |
spatie/laravel-package-tools Version ^1.9.2 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.