The package has a clear README, a stable 1.3.0 release, and no install-time scripts or deprecation notice. Its small user base, absent security policy, and lack of recent repository activity make long-term support uncertain.
58%
Total Score
0
100
81
88
There were zero commits and zero active maintainers in the last three months, following the August 2025 push; this is the strongest evidence of current maintenance risk.
The package has four releases over roughly 16 months, but none in the last 12 months; this indicates maintenance has slowed materially.
The repository has zero stars and forks and only one watcher, indicating little visible community support if maintenance problems arise.
Composer build tooling is present, but no security scanning tools were detected; this is a modest transparency and maintenance gap rather than a severe risk.
The repository has no security policy, leaving vulnerability-reporting expectations unclear for a package that sends messages through external services.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
illuminate/cache Version ^9.0|^10.0|^11.0|^12.0 | — | — |
illuminate/support Version ^9.0|^10.0|^11.0|^12.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.