The package includes tests, a substantial README, and a focused dependency set. Registry access rests with one person, and the repository has no security scanning or documented security policy.
76%
Total Score
50
100
89
75
Only one account has registry publish access, leaving limited publishing redundancy. The frequent release history partly offsets this concern by showing that the account is actively maintaining the package.
The repository owner is an individual user rather than an organization, so there is no observed organizational backing to broaden maintainer capacity. This is partly offset by the active release history.
The repository has zero stars, forks, and watchers, providing no community adoption evidence. Popularity is supporting evidence rather than a requirement, so this is a modest concern rather than a health verdict.
Composer build tooling is present, but no security scanning tools were detected. This weakens automated security hygiene without indicating abandonment.
The repository has no documented security policy. That limits transparency around vulnerability reporting and response expectations.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
illuminate/support Version ^8.0 || ^9.0 || ^10.0 || ^11.0 || ^12.0 || ^13.0 | — | — |
illuminate/database Version ^8.0 || ^9.0 || ^10.0 || ^11.0 || ^12.0 || ^13.0 | — | — |
illuminate/validation Version ^8.0 || ^9.0 || ^10.0 || ^11.0 || ^12.0 || ^13.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.