The package has a clear README, MIT licensing, repository tests, security scanning, and release notes for this version. Recent activity is quiet, and its 13 workflow actions are all unpinned, leaving maintenance and build-reproducibility concerns.
68%
Total Score
50
100
100
50
There were zero commits and zero active maintainers in the last three months. The recent 5.0.0 release partly offsets this, but the current maintenance signal is quiet.
The repository has 12 open issues and no new or closed issues or pull requests in the last month, indicating limited recent issue-management activity.
The repository has no security policy. This is a transparency gap, although Psalm security scanning and the absence of workflow audit findings provide some compensating project hygiene.
All three workflows were analyzed with no dangerous triggers, sinks, or audit findings, but all 13 action references are unpinned. This is a reproducibility and workflow supply-chain hygiene gap, not a severe risk on its own.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
laravel/framework Version ^10.0|^11.0|^12.0|^13.0 | — | — |
laravel/serializable-closure Version ^1.0|^2.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.