The package has a usable README, tests, changelog, matching repository, and MIT license. However, releases and repository commits stopped in January 2021, leaving this Laravel integration with a substantial abandonment risk. No repository security scanning or security policy is provided.
48%
Total Score
25
100
71
50
The last release was on January 11, 2021, and there were no releases in the following 12 months; this is strong evidence of abandonment despite 18 historical releases.
The repository recorded 0 commits and 0 active maintainers in the last 3 months, consistent with the long release gap and leaving compatibility maintenance uncertain.
The repository is owned by a user account rather than an organization, so there is no provided evidence of organizational backing to offset the inactive project.
The repository has 1 star, 0 forks, and 0 watchers, offering little evidence of a broader community that could compensate for the inactive maintainer base.
Composer build tooling is present, but no security scanning tools are reported, leaving automated security checks unconfirmed.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
guzzlehttp/guzzle Version ^6.0.0|^7.0.0 | — | — |
laminas/laminas-diactoros Version ^2.5 | — | — |
symfony/psr-http-message-bridge Version ^2.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.