The stable major release, clear licensing, and focused package structure help keep adoption straightforward. The repository lacks a security policy and automated security scanning, leaving less evidence for dependable long-term use.
58%
Total Score
75
86
75
The latest release was over two years ago, and there were no releases in the preceding 12 months despite 15 releases overall. This indicates materially slowed maintenance for a package consumers may depend on.
The repository recorded no commits and no active maintainers in the last three months, consistent with the long release gap. The repository is not archived, but current maintenance capacity is not demonstrated.
Composer is used for builds, but no security scanning tools were detected. That leaves supply-chain and dependency issues less likely to be caught automatically.
No security policy was found in the repository, so there is no documented process for reporting or handling vulnerabilities. This is a transparency gap rather than evidence that the package is unsafe.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
guzzlehttp/guzzle Version ~6.0|~7.0 | — | — |
illuminate/support Version ^6|^8|^9|^10 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.