Rivet appears structurally complete and usable: it has an MIT license, documentation, tests, a changelog, a substantial 204-file tree, no install-time lifecycle scripts, a modest dependency set, and a non-archived repository that clearly matches the package. However, this release is effectively brand new, with all four releases published within hours and no demonstrated issue or community activity; the repository also has no security scanning or security policy. The package is therefore promising but not yet mature enough to carry a high-confidence dependency recommendation without monitoring future maintenance and release quality.
68%
Total Score
50
100
83
90
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
laravel/sanctum Version >=3 | — | — |
laravel/framework Version >=10 | — | — |
pragmarx/google2fa Version ^8.0|^9.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.