The organization-backed repository includes tests, a matching package name, and a clear license. Its documentation and security coverage are thin, while its very recent publication leaves maintenance maturity unproven.
63%
Total Score
83
100
83
88
The artifact includes tests, and the repository also reports tests, which provides useful verification. The missing README and changelog reduce consumer documentation, though the missing changelog is normal for a newly published package.
This is the first release, published 0 days ago, with only one release recorded. That is not abandonment evidence, but it provides no track record for judging release reliability.
No commits or active maintainers were observed in the last 3 months. Because the repository was created today, this is not yet evidence of abandonment, but ongoing maintenance is unproven.
Composer is used as the build tool, which fits the package ecosystem, but no security scanning tools were detected. That is a modest transparency and assurance gap.
The repository has no security policy. This does not show a vulnerability, but it leaves the process for reporting and handling security issues undocumented.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
laravel/socialite Version 5.31.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.