The package is clearly identified, licensed, and documented with a usable README. Its short history and limited recent activity provide little evidence of durable maintenance, and the repository has no security scanning or policy.
64%
Total Score
50
100
88
50
One registry maintainer is consistent with the repository being owned by an individual, but it leaves limited visible publishing redundancy and increases dependence on one person.
The package is only 50 days old with two releases and a median interval of about 11 days, so there is not yet enough history to demonstrate long-term maintenance.
Only one commit was recorded in the last three months, with zero active maintainers in that period. For a package released only recently this is limited evidence of ongoing maintenance.
Composer build tooling is present, but no security-scanning tools are configured, leaving a repository hygiene gap for a package that handles queue and mail data.
The repository has no security policy, reducing transparency about how vulnerabilities should be reported and handled.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
illuminate/mail Version ^10.0|^11.0|^12.0 | — | — |
illuminate/queue Version ^10.0|^11.0|^12.0 | — | — |
illuminate/support Version ^10.0|^11.0|^12.0 | — | — |
illuminate/database Version ^10.0|^11.0|^12.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.