Documentation and packaging are solid, with tests, a changelog, a clear MIT license, and organizational ownership. Maintenance has stopped for over a year, so dependents face elevated abandonment risk; use a maintained alternative if one exists.
45%
Total Score
50
72
50
The package has had no releases in the last 12 months, despite nine releases arriving in a short initial burst. This suggests the project may have stalled after early development.
The repository recorded zero commits and zero active maintainers during the last three months, consistent with the absence of releases over the past year. This is the strongest abandonment concern in the assessment.
The package defines four Composer lifecycle scripts that run during installation or updates. Such scripts are common for Laravel applications, but they increase install-time behavior and warrant more trust in a project whose maintenance has stalled.
There are 13 open issues, with no new or closed issues and no pull-request activity in the last month. The unresolved queue and lack of recent triage reinforce the maintenance concern.
The repository has two stars, zero forks, and one watcher. Low adoption is only supporting evidence, but it suggests limited community backup if maintenance stops.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
league/csv Version ^9.0 | — | — |
symfony/yaml Version ^7.0 | — | — |
marcj/topsort Version ^2.0 | — | — |
laravel/tinker Version ^2.9 | — | — |
composer/semver Version ^3.4 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.