The small codebase has tests, a clear README, and matching repository ownership. Maintenance has stopped since January 2022, while adoption is minimal and no security policy is provided.
58%
Total Score
50
100
75
83
The package has had no release in over four years, despite eight releases overall. That long gap is meaningful abandonment risk for a library dependency.
The repository recorded zero commits and zero active maintainers in the last three months, consistent with the release gap. No newer activity compensates for the lack of current maintenance evidence.
The repository has only 2 stars, 0 forks, and 1 watcher, providing little evidence of broad community use or support. Popularity is supporting evidence rather than a verdict, but it reinforces the maintenance concern.
The repository uses Composer build tooling, which fits the package ecosystem. No security scanning tools are present, leaving a minor process gap.
The repository has no security policy, reducing transparency about how dependency and vulnerability reports are handled. This is a hygiene gap, not evidence of malicious behavior.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
illuminate/support Version >=8.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.