A clear MIT license, README, tests, and changelog support adoption. CI hygiene is incomplete, with no security policy and unpinned container images.
56%
Total Score
67
100
89
67
The package runs a post-autoload-dump lifecycle script during installation. This is a real execution surface, but the provided signal does not show a dangerous command or behavior, so it is a limited caution rather than a severe risk.
The package is only 174 days old and published 101 releases in one day, an unusually compressed release history that provides limited evidence of an established release cadence.
The repository recorded zero commits and zero active maintainers in the last three months, despite the package being only 174 days old, which weakens confidence that maintenance is continuing.
There were no new or merged pull requests and no issue activity in the last month. This is limited supporting evidence, but it is consistent with the recent absence of commits.
Composer and Just are used for project tooling, but no security scanning tools were detected, leaving a modest security-process gap for a library with active CI.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
caufab/omniterm Version ^2.1.1 | — | — |
spatie/ignition Version ^1.15 | — | — |
illuminate/events Version ^10.0|^11|^12 | — | — |
illuminate/support Version ^10.0|^11|^12 | — | — |
illuminate/database Version ^10.30|^11|^12 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.