The repository has no commits in the last three months, and it has no security scanning or policy. A README, tests, release notes, and matching repository provide useful transparency, but the short release history offers limited evidence of sustained maintenance.
65%
Total Score
50
79
75
All three releases arrived within roughly seven hours on the first release day, and there have been no later releases over the package's roughly eight-month lifetime. This is limited evidence of sustained maintenance.
There were zero commits and zero active maintainers in the last three months. Combined with the one-day release burst, this is the strongest evidence that ongoing maintenance is unproven.
The repository has one star, no forks, and no watchers, so there is little community evidence to supplement the thin maintenance record. Low popularity alone is not a rejection reason.
Composer is used for the build, but the repository reports no security scanning tools. This is a maintenance and transparency gap, though not a severe risk by itself.
The repository has no security policy, leaving no documented process for reporting or handling vulnerabilities. This lowers project transparency for a package that sends application logs to an external service.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
monolog/monolog Version ^3.0 | — | — |
guzzlehttp/guzzle Version ^7.0 | — | — |
illuminate/support Version ^10.0|^11.0|^12.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.