🔑 Simple Keycloak Guard for Laravel
45%
Total Score
unhealthy
Risky: this package has had only one release, over three years ago, leaving maintenance unproven.
This is the package's only release, published over three years ago, with no releases in the last 12 months. That long period without a new release is strong evidence of inactive maintenance for an authentication library.
Only one registry account has publishing access, so there is little visible publishing redundancy. This is a modest concern, though the repository is user-owned and the registry list alone does not prove maintenance capacity.
The package and repository are both owned by the same user account, and no organization backing is shown. This supports clear ownership but offers limited evidence of broader maintenance capacity.
Composer build tooling is present, but no security-scanning tooling was detected. For an authentication package, that is a meaningful hygiene gap, though not evidence of a specific vulnerability.
The repository has no security policy, leaving no documented channel or process for reporting vulnerabilities in an authentication-related package.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
firebase/php-jwt Version ^6.3 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.