基于 laravel 10 开发的初始化项目.
62%
Total Score
caution
Usable with caveats: repository commit activity has stopped despite a recent release history.
The package runs four install and project-creation lifecycle scripts, increasing installation complexity and the amount of code executed automatically. This may be normal for a Laravel project template, but it still warrants more review than a package without install-time behavior.
The repository recorded 0 commits and 0 active maintainers in the last 3 months, which is a meaningful maintenance warning. The repository is not archived and was pushed recently, so this indicates possible slowing rather than abandonment by itself.
Composer build tooling is present, but no security scanning tools were detected. The build setup is established, while the missing scanning coverage modestly lowers assurance.
The linked repository has no security policy, leaving no documented process for reporting or handling vulnerabilities. This is a transparency gap, though it is not evidence of an active security problem.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
laravel/tinker Version ^2.8 | — | — |
guzzlehttp/guzzle Version ^7.2 | — | — |
laravel/framework Version ^10.0 | — | — |
knuckleswtf/scribe Version ^5.8 | — | — |
spatie/laravel-data Version ^4.19 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.