It includes tests, a readable README, and an MIT license. The repository has no security policy and its workflow dependencies are unpinned, so ongoing maintenance deserves scrutiny.
57%
Total Score
50
50
83
67
Seven runtime dependencies are reasonable for a Laravel authentication integration, though the package depends on several framework and authentication components that require compatibility maintenance.
Two registry maintainers are listed, which is a small but plausible maintainer base for a user-owned package. The lack of recent activity limits the reassurance this provides.
The repository is owned by an individual account matching the package namespace, so the small maintainer list is not unexpectedly thin for organizational publishing. It does not provide organization-level continuity.
The package has 49 releases, but none in the last 12 months; the latest release was about 18 months ago. This suggests maintenance has stalled despite a substantial release history.
There were no commits and no active maintainers in the last three months, consistent with the absence of releases in the last year and indicating current maintenance risk.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
laravel/passport Version ^12.4 | — | — |
laragear/webauthn Version ^4.0 | — | — |
laravel/socialite Version ^5.17 | — | — |
nuwave/lighthouse Version ^6.49 | — | — |
laragear/two-factor Version ^3.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.