There is no security policy, which leaves less guidance for reporting and handling problems. The package does include a substantial README, tests, a release record, and a matching repository, but its maintenance evidence is thin.
55%
Total Score
75
100
83
83
This is the package's only release, published about 2 years and 3 months ago, with no releases in the last 12 months; that limits evidence of ongoing maintenance.
The repository had zero commits and zero active maintainers in the last 3 months, which is the clearest evidence of limited current maintenance.
The repository has zero stars, forks, and watchers, providing no community adoption signal to compensate for the thin maintenance evidence.
Composer is used for builds, but no security scanning tools are reported; this is a modest transparency and assurance gap.
No repository security policy is present, so there is no documented channel or process for reporting vulnerabilities.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
illuminate/support Version 5.0.*|5.1.*|5.2.*|5.3.*|5.4.*|5.5.*|5.6.*|5.7.*|5.8.*|^6.0|^7.0|^8.0|^9.0|^10.0|^11.0 | — | — |
illuminate/validation Version 5.0.*|5.1.*|5.2.*|5.3.*|5.4.*|5.5.*|5.6.*|5.7.*|5.8.*|^6.0|^7.0|^8.0|^9.0|^10.0|^11.0 | — | — |
illuminate/translation Version 5.0.*|5.1.*|5.2.*|5.3.*|5.4.*|5.5.*|5.6.*|5.7.*|5.8.*|^6.0|^7.0|^8.0|^9.0|^10.0|^11.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.