It includes clear usage instructions and a matching MIT license. The small, single-maintainer project has no security policy or scanning, leaving limited evidence of ongoing oversight.
55%
Total Score
50
71
50
The package has only 6 releases over about 10 years, with no releases in the last 12 months and the latest release more than four years ago. This is the strongest evidence of stalled maintenance.
Only one registry account has publish access, which creates some continuity risk for a small, user-owned project. The repository evidence does not show organization backing to compensate for that thin publishing base.
The repository has 0 stars, 0 forks, and 1 watcher. Popularity is not required for health, but these values provide little supporting evidence of broad review or adoption.
Composer is used for builds, but no security-scanning tooling is present. This is a modest transparency and maintenance concern rather than evidence that the release is unsafe.
The linked repository has no security policy. That weakens the project's documented process for receiving and handling vulnerability reports.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
smarty/smarty Version 4.*@stable | — | — |
illuminate/cache Version >=8.0 | — | — |
illuminate/config Version >=8.0 | — | — |
illuminate/support Version >=8.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.