It includes a substantial README, repository tests, release notes, an MIT license, and a security policy. CI references are pinned and the workflow audit found no injection or high-severity issues. The early release and concentrated contributor activity warrant caution.
68%
Total Score
100
100
86
83
The package is less than one day old with only three releases, so there is not enough history to demonstrate long-term maintenance or stability.
Version 0.2.1 is not a stable major release, which indicates an early-stage API and a higher chance of breaking changes.
All five workflows were analyzed, all 12 action references are pinned, and no audit findings or injection sinks were reported. Three workflows grant top-level write permissions, a mild hygiene concern without an accompanying untrusted sink.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
spatie/db-dumper Version ^4.1 | — | — |
illuminate/contracts Version ^11.0||^12.0||^13.0 | — | — |
spatie/laravel-package-tools Version ^1.16 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.