The package is clearly licensed, documented, and has a modest dependency surface with no install-time scripts. Its security policy and automated security scanning are absent, so maintenance depends heavily on one individual.
70%
Total Score
50
100
94
75
All four recent commits came from one contributor, leaving no demonstrated backup maintainer if that person stops maintaining the project.
Four commits were made in the last three months, showing some ongoing maintenance, though the volume is modest for a rapidly released young package.
Composer is used for the build, but no security scanning tools are configured, leaving an avoidable verification gap.
The repository has no security policy, so users are not given a documented channel or process for reporting vulnerabilities.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
illuminate/view Version ^11.0|^12.0|^13.0 | — | — |
illuminate/support Version ^11.0|^12.0|^13.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.