BlatUI Admin for Laravel projects.
68%
Total Score
caution
A brand-new package with one contributor and an install script, despite strong documentation and repository hygiene.
The package runs a post-autoload-dump lifecycle script during Composer installation. This is a supply-chain surface that merits review, although the signal does not show malicious behavior or an unsafe script.
The package is only 0 days old with two releases, so there is not yet enough history to demonstrate sustained maintenance or release stability.
All 44 recent commits came from one contributor, leaving maintenance highly dependent on a single person and increasing abandonment risk.
Version v0.0.2 is below a stable major release, indicating an early-stage API and a higher likelihood of breaking changes.
All two workflows were analyzed with no audit findings and all five action references pinned, but one workflow grants top-level write permissions. No untrusted trigger or checkout sink was found to amplify that concern.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
anousss007/blatui Version ^1.3 | — | — |
illuminate/support Version ^12.0||^13.0 | — | — |
mallardduck/blade-lucide-icons Version ^1.21||^2.0 | — | — |
gehrisandro/tailwind-merge-laravel Version ^1.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.