The project has one registry maintainer, no security policy, and no automated security scanning, which weakens its maintenance safety net. MIT licensing, tests, documentation, and a repository that matches the package provide useful transparency.
55%
Total Score
25
50
72
67
The latest release was September 2022, with zero releases in the last 12 months, indicating several years without published maintenance. This is partly offset by a stable release history rather than prerelease churn.
There were zero commits and zero active maintainers in the last three months, consistent with the long gap since the last release. This materially increases abandonment risk.
Eight runtime dependencies, including Laravel Passport, filesystem, permissions, PDF, spreadsheet, and image packages, create a broad dependency surface for a code-generation package. The signal does not show that any dependency is unsafe or unmaintained, so this is a moderate caution rather than a severe risk.
Only one account has registry publish access, so release continuity depends heavily on a single individual. The repository is user-owned rather than organization-backed, providing no supplied evidence of a broader publishing team.
The repository reports zero stars, forks, and watchers. Popularity is only supporting evidence, but these counters provide no community signal to offset the thin maintenance evidence.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
laravel/passport Version ^10.0 | — | — |
intervention/image Version ^2.5 | — | — |
orchestra/testbench Version ^6.3 | — | — |
barryvdh/laravel-dompdf Version ^0.8.7 | — | — |
phpoffice/phpspreadsheet Version ^1.15 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.