The package is small and focused, with a matching source repository, an MIT license, and no install-time scripts. Its short documentation, single-user ownership, and lack of security tooling leave maintenance and adoption quality uncertain.
58%
Total Score
50
79
75
One registry maintainer is consistent with a small user-owned project, but it provides limited visible maintenance capacity and increases reliance on one person.
A README is present, but it contains only 29 characters and there are no tests or changelog. The missing tests and changelog are normal for published artifacts; the extremely short README is a minor consumer-documentation gap.
The repository is owned by a single user rather than an organization, so there is no visible organizational backing to compensate for the thin maintainer base.
The package has only two releases, both published about five months ago on the same day, with no later release activity. That leaves its longer-term maintenance uncertain.
The repository recorded zero commits and zero active maintainers over the last three months. For a package only about five months old, that is a meaningful maintenance concern.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
laravel/framework Version ^10.0|^11.0|^12.0|^13.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.