Tests are present, the project is licensed, and the repository is not archived. It has only one release, no commits in the last three months, no security policy, and workflows use unpinned actions, so maintenance and build integrity remain concerns.
58%
Total Score
25
100
88
50
There were no commits and no active maintainers in the last three months, which is a meaningful maintenance concern for a package only six months old.
The package runs four lifecycle scripts, including post-autoload-dump and post-update-cmd; this increases install and update complexity and warrants caution for a dependency.
The repository is owned by an individual user rather than an organization, so the project has no visible organizational backing to compensate for its thin maintenance evidence.
This package is about six months old but has only one release, so there is little evidence of an established release process or ongoing maintenance.
Composer is used as a build tool, but no security scanning tools are configured, leaving automated detection coverage weaker than it could be.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
laravel/tinker Version ^3.0 | — | — |
laravel/fortify Version ^1.34 | — | — |
laravel/framework Version ^13.0 | — | — |
laravel/wayfinder Version ^0.1.14 | — | — |
inertiajs/inertia-laravel Version ^3.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.