Tests, a useful README, and release notes support adoption. The repository lacks a security policy and scanning, so maintenance and security transparency are limited.
62%
Total Score
75
100
88
75
The package has 19 releases since December 2017, but its latest registry release was in April 2023 and there were no releases in the following 12 months of the measured history. This indicates an aging release line.
There were no commits and no active maintainers in the measured three-month period. Combined with no registry releases since April 2023, this is a meaningful sign of slowed maintenance.
Composer is used for builds, but no security scanning tool was detected. That is a transparency and hygiene gap, though it does not by itself show abandonment.
The repository has no security policy. For a package that handles API credentials, this weakens the documented security response process.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
guzzlehttp/guzzle Version ^6.2|^7.0.1 | — | — |
illuminate/support Version ^6.0|^7.0|^8.0|^9.0|^10.0 | — | — |
symfony/psr-http-message-bridge Version ^1.0|^2.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.