The package has had no releases or commits for more than nine years, and its repository has no tests or security scanning. Its MIT license, focused source tree, and useful README provide some transparency, but they do not offset the abandonment risk.
38%
Total Score
0
67
50
The latest release was published more than nine years ago, with no releases in the past 12 months. This is strong evidence that the package is no longer actively maintained.
The repository recorded zero commits and zero active maintainers in the last three months, consistent with the long release gap and increasing abandonment risk.
The repository has one star and no forks, offering little supporting evidence of broad community review or shared maintenance capacity. Popularity is only supporting evidence, so this reinforces rather than drives the abandonment concern.
Composer is used as the build tool, but no security scanning tools are present. For a package that handles Laravel logging and request data, this leaves a modest transparency gap.
The repository has no security policy, reducing clarity about how vulnerabilities should be reported. This matters more because the package processes application logs and request or response data.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
illuminate/http Version >=5.2 | — | — |
monolog/monolog Version >=1.19 | — | — |
illuminate/support Version >=5.2 | — | — |
illuminate/database Version >=5.2 | — | — |
symfony/http-foundation Version >=3.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.