Documentation, tests, licensing, and recent releases provide a solid foundation. The small dependency set and absence of install scripts reduce operational surprises.
72%
Total Score
50
100
94
83
The repository is owned by a user account rather than an organization, so the concentrated maintainer and contributor activity has no visible organizational handoff buffer.
One contributor made all three recent commits, leaving maintenance highly concentrated and increasing continuity risk if that contributor becomes unavailable.
Three commits were made in the past three months, so activity is present, though the volume is modest for an actively evolving library.
Composer build tooling is present, but no security scanning tools were detected, leaving a modest gap in repository hygiene.
The repository has no security policy, reducing transparency about how vulnerabilities should be reported and handled.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
illuminate/http Version ^12.0|^13.0 | — | — |
illuminate/support Version ^12.0|^13.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.