The compact package has a clear README, an MIT declaration, and no install-time scripts, making its contents straightforward to inspect. Its immature version and lack of tests or security tooling leave too little evidence of ongoing maintenance for a new dependency.
42%
Total Score
50
63
67
Only two releases exist, with the latest published about 20 months ago and none in the past 12 months. This is strong evidence of an inactive project, despite the normal 24-day interval between its initial releases.
There were no commits and no active maintainers in the past three months. Combined with the long release gap, this indicates a substantial abandonment risk.
The artifact is small and its source files, configuration, and README are visible, making the package relatively easy to inspect. The limited tree also provides little evidence of a mature development process.
The repository has zero stars and forks and only one watcher, providing no community adoption signal. Popularity is supporting evidence, so this reinforces the limited maturity picture without determining it alone.
Composer is used for the build, but no security-scanning tool is configured. For a small package this is a hygiene gap rather than a severe risk, though it provides little additional maintenance assurance.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
kint-php/kint Version ^3.3 | — | — |
illuminate/support Version ^8.32 || ^9.0 || ^10 || ^11 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.