Laravel Socialite provider for Zenith, the WOTZ OAuth2 server
68%
Total Score
caution
A first release with no activity yet and unpinned workflow actions keeps this otherwise well-documented package in the caution range.
This is the package's first release, published less than 1 hour ago, so there is no release track record or demonstrated maintenance cadence yet. Its age makes the lack of history ambiguous rather than evidence of abandonment.
The repository shows 0 commits and 0 active maintainers over the last 3 months. Because the package was created less than 1 hour ago, this is best read as unproven maintenance capacity rather than established abandonment.
Composer build tooling is present, but no security scanning tools were detected. For a small first release this is a hygiene gap, not a severe supply-chain concern.
The release is v0.1.0 rather than a stable major version, which indicates an early API and maturity stage. It is not marked as a prerelease, so this is a moderate maturity concern rather than a severe warning.
The single workflow was fully analyzed with no audit findings, dangerous triggers, untrusted checkouts, or script injections. However, both of its two action references are unpinned, leaving them exposed to upstream reference changes.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
illuminate/http Version ^11.0|^12.0|^13.0 | — | — |
laravel/socialite Version ^5.5 | — | — |
illuminate/support Version ^11.0|^12.0|^13.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.