The README, changelog, and repository tests give consumers useful coverage, while MIT licensing and no install scripts reduce adoption friction. Missing security tooling leaves less assurance for a package handling cache data.
58%
Total Score
25
100
78
75
The repository has recorded zero commits and zero active maintainers in the last three months, limiting evidence of ongoing maintenance after the initial release.
One registry maintainer creates a thin publishing base, although this is a small project and the repository shows a matching individual owner.
The package is 111 days old and has only one release, so there is little evidence of an established release process or long-term maintenance.
The repository has zero stars, forks, and watchers. This is weak supporting evidence for maturity, but popularity alone does not determine whether a small package is healthy.
Composer build tooling is present, but no security scanning tools were detected, leaving a transparency and maintenance-hygiene gap.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
illuminate/support Version ^10.0 || ^11.0 || ^12.0 || ^13.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.