The MIT license, substantial README, tests, changelog, and exact-version release notes make integration and ongoing use clearer. The small project footprint, absent security policy, and unpinned workflow actions leave less maintenance and build assurance than a mature dependency.
68%
Total Score
50
100
83
75
The package is only 121 days old and has two releases, with a median interval of about 9 days; this shows an initial release effort but not yet a long maintenance record.
There were zero commits and zero active maintainers in the last three months. For a package only about four months old, this is a meaningful sign that maintenance may have stalled after the initial releases.
There are no open issues, but one pull request remains open and no issues or pull requests were merged in the last month; this provides little evidence of active community maintenance.
The repository has five stars, one fork, and one watcher, indicating a small user and contributor footprint. Low popularity is supporting evidence rather than a problem by itself, but it limits external maintenance signals.
Composer build tooling is present, but no security scanning tools were detected. The missing scanning layer is a modest transparency and assurance gap.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
illuminate/http Version ^10.0|^11.0|^12.0|^13.0 | — | — |
illuminate/support Version ^10.0|^11.0|^12.0|^13.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.