The project is very new, so its maintenance record is not yet established. It includes tests, a clear README, matching source, and an MIT license, but has one publisher and no security policy or scanning.
60%
Total Score
63
100
89
83
Only one registry publisher account is listed, leaving a thin publishing base and increasing continuity risk if that person becomes unavailable.
The repository is owned by an individual account different from the registry namespace, with no organizational backing shown; this provides limited continuity evidence for a one-person project.
The package was first released today and has only 3 releases, all within the same day, so there is not enough history to demonstrate sustained maintenance.
There were no commits or active maintainers during the past 3 months. Because the repository and package are only hours old, this mainly reflects insufficient history rather than confirmed abandonment.
Composer build tooling is present, but no security-scanning tool was detected, leaving security hygiene less demonstrated.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
illuminate/http Version ^9.0|^10.0|^11.0|^12.0 | — | — |
illuminate/routing Version ^9.0|^10.0|^11.0|^12.0 | — | — |
illuminate/support Version ^9.0|^10.0|^11.0|^12.0 | — | — |
illuminate/database Version ^9.0|^10.0|^11.0|^12.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.