The clear README and small dependency set make integration straightforward. The project is brand new, with no demonstrated maintenance record and no security scanning or policy. Pin this version and reassess after sustained releases.
68%
Total Score
50
100
79
50
The package is only 0 days old and has two releases, so there is not enough history to demonstrate sustained maintenance or release reliability.
There were no commits or active maintainers in the last three months, but the repository is newly created, so this is limited evidence rather than proof of abandonment.
Composer is used for builds, but no security scanning tools are configured, leaving a modest transparency and maintenance gap.
The repository has no published security policy, reducing clarity about how vulnerabilities should be reported and handled.
Version v0.2.1 is not a stable major release, but it is not marked as a prerelease, so the maturity concern is limited.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
illuminate/http Version ^11|^12|^13 | — | — |
illuminate/cache Version ^11|^12|^13 | — | — |
illuminate/support Version ^11|^12|^13 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.