The package has clear licensing, a substantial README, tests in the source, and a security policy. Its beta status and zero commits since publication leave maintenance and stability unproven; pinning this exact release is safer than treating it as mature.
58%
Total Score
50
79
100
The source repository is owned by an individual account rather than an organization, so there is no demonstrated organizational backing to offset the very limited maintenance history.
Only two releases exist and the package was first published today, so there is not yet enough release history to demonstrate mature maintenance or stability.
The repository has zero commits and zero active maintainers in the last three months. Because the package is newly published, this does not prove abandonment, but it leaves ongoing maintenance un demonstrated.
Composer build tooling is present, but no security-scanning tool was detected. This is a modest transparency and hygiene gap rather than evidence that the release is unsafe.
The assessed release is v2.0.0-beta.2 and all recent releases are prereleases, so compatibility and production readiness remain less certain than for a stable release.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
laravel/tinker Version ^3.0 | — | — |
laravel/horizon Version ^5.48 | — | — |
twstec/kit-auth Version ^2.0@beta | — | — |
twstec/kit-admin Version ^2.0@beta | — | — |
laravel/framework Version ^13.17 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.