The stable version and organization-backed repository offer limited reassurance, but the project shows no ongoing maintenance or basic documentation. Its licensing is also unclear, increasing adoption and legal risk.
38%
Total Score
50
100
69
83
The package has had only two releases, both in October 2017, and none in the last 12 months despite being assessed at a mature v1.1.0. This strongly raises abandonment risk.
The repository recorded zero commits and zero active maintainers in the last three months, consistent with the absence of releases for nearly nine years. No provided activity signal compensates for this.
The manifest says "inherit," but no license was detected in the package or repository and no license file is present. The release therefore lacks a clear license for downstream users.
The published artifact has no README, tests, or changelog. Missing tests and changelog are normal for a published artifact, but the absent README is a minor consumer-documentation gap for a Laravel library.
The repository uses Composer, appropriate for a Packagist package, but has no security scanning tools. Given the package's tiny scope this is a minor hygiene gap rather than a primary concern.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
laravel/framework Version 5.* | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.