The organization-owned repository is correctly linked and the package includes a README, tests, MIT licensing, and no install-time scripts. Its short release history and limited contributor activity leave long-term maintenance depth unproven.
67%
Total Score
67
79
75
The package is about 170 days old with three releases, spaced about 85 days apart. That shows some ongoing publication but provides limited evidence of mature, sustained maintenance.
All two recent commits came from one contributor, leaving maintenance dependent on a single active developer. Organization ownership provides some handoff capacity but does not remove the present concentration.
Only two commits were made in the last three months, showing limited recent development activity. The recent push is encouraging, but the volume is too small to establish strong maintenance momentum.
Composer build tooling is present, but no security-scanning tools were detected. That is a meaningful repository hygiene gap for a package handling API integrations.
The repository has no security policy, so users have no documented channel or process for reporting vulnerabilities. This lowers transparency but is not an immediate dependency blocker.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
symfony/mailer Version ^6.0|^7.0|^8.0 | — | — |
illuminate/mail Version ^10.0|^11.0|^12.0|^13.0 | — | — |
guzzlehttp/guzzle Version ^7.0 | — | — |
illuminate/support Version ^10.0|^11.0|^12.0|^13.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.