Documentation is strong, with a substantial README and release notes for this version. The single-person project has no tests or security scanning, so future maintenance and verification remain limited.
58%
Total Score
50
100
75
83
The package has had no release in over four years, with only two releases overall and none in the last 12 months; this is the strongest abandonment concern.
Only one registry publishing account is listed. Because the repository is owned by an individual rather than an organization, this indicates a thin maintainer base and greater continuity risk.
The repository is owned by an individual user, not an organization, so there is no observed organizational backing to offset the single-maintainer risk.
Composer is used for builds, but no security-scanning tooling is present, leaving fewer automated checks around the project.
The repository is not archived, which preserves a path for maintenance, although its last push was in April 2022 and matches the stale release history.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
guzzlehttp/guzzle Version ^7.4 | — | — |
laravel/framework Version ^9.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.