Tests, a README, and an organization-backed repository provide useful maintenance context. The package has no license and its ecosystem activity appears to have stopped, so adopting it carries substantial abandonment and legal risk.
38%
Total Score
100
67
50
The latest release was in October 2016, with no releases in the last 12 months despite the package being over 10 years old. This is strong evidence of abandonment risk.
No declared license, license file, or detected repository license is present, leaving the release without clear permission for downstream use.
The repository has zero stars and forks and only two watchers, offering little community evidence to offset the long period without releases. Popularity is supporting evidence, so this remains a caution rather than a decisive factor.
The repository has no security policy, which leaves vulnerability-reporting expectations undocumented. This is a secondary transparency gap rather than evidence of active risk.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
illuminate/mail Version ^5.3 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.