The package includes a license, README, tests marker, and a repository tied to its published name. Its very small user base and lack of security tooling add little confidence for a legacy integration.
38%
Total Score
0
50
71
75
Only two releases were published, with the latest on March 3, 2015, and none in the last 12 months. This is strong evidence that maintenance has stopped.
The repository recorded zero commits and zero active maintainers in the last 3 months. Combined with the old latest release, this indicates a lack of current maintenance capacity.
Five runtime dependencies are declared, including Laravel support and asset-processing libraries. This is a meaningful dependency surface for an old package, but the signal alone does not show it is unsafe or unmaintained.
The repository has 1 star, 0 forks, and 1 watcher. Popularity is only supporting evidence, but these very low figures provide little evidence of an active user or contributor base.
The repository has no security policy. For a package that processes application assets, this weakens vulnerability-reporting transparency, though it is less serious than the maintenance gaps.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
mrclay/minify Version ~2.2.0 | — | — |
oyejorge/less.php Version ~1.5 | — | — |
illuminate/console Version ~4.2 | — | — |
illuminate/support Version ~4.2 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.