The MIT license and readable usage guide make its small artifact transparent. It has no tests or security policy, so maintenance changes would be difficult to validate.
38%
Total Score
0
100
78
88
The package has only one release, published about eight years ago, with no releases in the last 12 months. This is strong evidence of abandonment risk for a dependency.
The repository has had zero commits and zero active maintainers in the last three months, consistent with the package's long release gap. No newer activity offsets this concern.
The repository has one star, no forks, and no watchers, providing little community evidence to compensate for the lack of maintenance activity. Popularity is only supporting evidence, but it reinforces the maturity concern here.
Composer is used for the build, but no security-scanning tools are present. That leaves dependency and code issues without visible automated security checks.
The repository has no security policy, leaving no documented path for reporting or handling vulnerabilities. This is a meaningful transparency gap for an authentication-related package.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
xutl/laravel-sms Version ^1.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.