Healthy and suitable to depend on, with established maintenance and clear project support. The main caveats are that all recent commits came from one contributor and the repository lacks declared security scanning and workflow token permissions.
82%
Total Score
80
100
94
83
All three recent commits came from one contributor, creating a narrow operational base; organization ownership provides some ability to hand maintenance off but does not remove the concentration risk.
The repository received three commits in the last three months, showing recent activity, but that activity is modest for an actively maintained dependency.
Composer build tooling is present, but no security scanning tools were detected, leaving a security-maintenance gap despite other repository safeguards.
Neither workflow declares top-level token permissions. No write permissions were observed, but explicit least-privilege settings would provide stronger workflow hygiene.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
laravel/socialite Version ^5.29 | — | — |
illuminate/support Version ^12.0 || ^13.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.