Stable versioning and an MIT license make adoption straightforward. The repository is organized and releases frequently, but recent work is concentrated in one contributor and it lacks tests, a changelog, and a security policy.
68%
Total Score
67
88
83
The published artifact has no README, tests, or changelog, and the linked repository also reports none. The missing consumer documentation and tests reduce transparency for a library, while absent package tests and changelogs are not by themselves unusual packaging gaps.
One contributor made all one recent commit, creating a concentrated maintenance base. The repository is organization-owned, which provides some handoff capacity, but no second active contributor is shown.
Only one commit was recorded in the last three months, which is thin recent maintenance evidence. The active release history partly compensates, but source-level activity remains limited.
Composer is used as a build tool, but no security scanning tool is detected. The build setup is appropriate, while the missing scanning coverage is a modest transparency gap.
The repository has no security policy. This weakens vulnerability-reporting transparency, although it is a hygiene concern rather than evidence that the package is unsafe.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
illuminate/view Version ^10.45|^11.0|^12.0 | — | — |
tightenco/ziggy Version ^v2.5 | — | — |
illuminate/console Version ^10.45|^11.0|^12.0 | — | — |
illuminate/support Version ^10.45|^11.0|^12.0 | — | — |
illuminate/database Version ^10.45|^11.0|^12.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.