The package has no security policy or automated security scanning, and its install-time scripts increase the work needed to assess upgrades. The MIT declaration and matching source repository offer basic transparency, but the project provides little supporting documentation.
32%
Total Score
25
57
50
The latest release was in October 2016, with no releases in the last 12 months and only eight releases overall. Nearly ten years without a release is strong evidence that maintenance has stopped.
The repository recorded zero commits and zero active maintainers in the last three months, consistent with the long release gap and indicating no current maintenance capacity.
The package defines post-create, post-install, post-root-package-install, and post-update scripts, so installation and updates execute package-defined behavior and require extra review.
Only one registry account has publish access. This is a limited publishing base, though the linked repository is owned by the same user, so it is supporting evidence of a small rather than clearly disconnected project.
The package has no README, tests, or changelog, leaving consumers with limited guidance and verification material. Missing tests and changelog files are not expected in every published artifact, but the absent README is a meaningful documentation gap for a Laravel dashboard package.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.