It has a clear MIT license, tests, a matching repository, and a stable release. The missing security policy and absent security scanning reduce transparency, while the small project footprint limits independent support.
58%
Total Score
50
83
67
The package runs four Composer lifecycle scripts, including post-create-project-cmd and post-update-cmd. These are relevant execution-time behavior and deserve review, though their presence alone does not indicate poor maintenance.
The package has five releases since May 2024, but none in the past 12 months; this indicates stalled maintenance despite a previously short release interval.
The repository had zero commits and zero active maintainers in the past three months, weakening evidence of ongoing maintenance.
The repository has zero stars and forks and only one watcher. This is supporting evidence of a small project, not a standalone health failure, but it limits visible community validation.
Composer is used for builds, but no security scanning tools are configured, reducing automated coverage for dependency and code risks.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
laravel/tinker Version ^2.9 | — | — |
laravel/framework Version ^11.0 | — | — |
yusologia/lara-core Version ^1.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.