This is my package laravuewind
45%
Total Score
unhealthy
Risky: no releases since March 2024 and no recent commits indicate a likely maintenance gap.
The package has made no registry release in about 2 years and 6 months, despite 15 releases during its first year; this points to a substantial maintenance gap.
The repository recorded no commits and no active maintainers in the last 3 months, reinforcing the concern that development has stalled.
The repository has no security policy, leaving the preferred process for reporting vulnerabilities undocumented; this is a transparency gap rather than evidence of unsafe code.
All 6 analyzed action references are unpinned, and a high-confidence bot-condition finding affects the Dependabot auto-merge workflow. Broad write permissions add exposure, though no untrusted checkout or script injection was found.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
composer/composer Version ^2.4.2 | — | — |
czproject/git-php Version ^4.0.5 | — | — |
illuminate/contracts Version ^10.0|^11.0 | — | — |
spatie/laravel-package-tools Version ^1.14.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.