The source includes tests, extensive documentation, and release notes for this version. Organization backing and the MIT declaration help, while workflow references are unpinned and no security policy is provided.
55%
Total Score
50
100
79
75
The repository recorded 0 commits and 0 active maintainers in the last 3 months, with the last push about 5 months ago. That indicates stalled maintenance for a young package.
There have been 6 releases in the last 12 months, but they were concentrated over roughly 5 days and no later release is shown despite the package being about 5 months old. This supports initial activity but not sustained maintenance.
The linked repository is named “marque,” does not match the package name, and does not mention this package in its README. Although name differences can occur in monorepos, these combined values make package ownership less transparent.
The repository uses Composer build tooling but reports no security-scanning tools. This is a modest hygiene gap, partially offset by the clean workflow audit.
The repository has no security policy. For an authorization package, that leaves vulnerability reporting and security response expectations less transparent.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
illuminate/support Version ^12.0|^13.0 | — | — |
illuminate/database Version ^12.0|^13.0 | — | — |
illuminate/contracts Version ^12.0|^13.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.