The package is well documented, tested, licensed, and not deprecated, with a repository that matches the package. Maintenance appears stalled after two releases, while all seven workflow actions are unpinned and the repository has no security policy or scanning.
62%
Total Score
38
50
83
83
The repository recorded zero commits and zero active maintainers in the last three months, a significant sign that maintenance may have stalled.
Nine runtime dependencies, primarily Laravel components, represent a meaningful dependency surface but are coherent with the package's framework integration.
One registry maintainer is consistent with the repository being owned by an individual, but it leaves little visible publishing redundancy.
The registry and repository are both owned by the same individual account, providing direct ownership alignment but no organizational backing.
Only two releases exist over roughly eight months, with the latest released about eight months ago; this is limited evidence of an established maintenance cadence.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
illuminate/http Version ^10.0|^11.0|^12.0 | — | — |
illuminate/queue Version ^10.0|^11.0|^12.0 | — | — |
illuminate/events Version ^10.0|^11.0|^12.0 | — | — |
illuminate/console Version ^10.0|^11.0|^12.0 | — | — |
illuminate/routing Version ^10.0|^11.0|^12.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.