The source tree includes a README, and the package has no install hooks or deprecation notice. Its single-release history and no commits in the last three months leave maintenance capacity unproven, while the absent security policy adds a smaller transparency concern.
56%
Total Score
50
83
75
This is a young package with only one release over 159 days and no established release cadence, so its maintenance maturity is not yet demonstrated.
There were no commits and no active maintainers in the last three months, leaving current maintenance capacity unproven for a package with only one release.
The repository has zero stars, forks, and watchers. This is weak supporting evidence rather than a verdict, but it provides no sign of community adoption or review.
Composer is used as a build tool, but no security scanning tools are configured. The missing scanning is a modest hygiene gap, not evidence of unsafe code.
The repository has no security policy, reducing transparency about vulnerability reporting and response.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
illuminate/support Version ^10.0|^11.0|^12.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.