This is a generally healthy and transparent release with a stable version, an MIT license, substantial documentation, tests, a changelog, a complete-looking source tree, safe workflow analysis, and a repository that matches the package. The main concerns are that repository commit activity shows no commits or active maintainers in the last 3 months, security scanning and a security policy are absent, and all workflows lack top-level token-permission declarations. Those issues warrant monitoring, but they are partly offset by a release and repository push occurring on the assessment date, ongoing release history, organization backing, and the absence of deprecation or archival indicators.
78%
Total Score
88
50
94
80
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
illuminate/http Version ^8|^9|^10|^11|^12|^13|14.x-dev|dev-master|dev-main | — | — |
symfony/console Version ^5.4|^6.0|^7.0|^8.0 | — | — |
guzzlehttp/guzzle Version ^7.0 | — | — |
illuminate/console Version ^8|^9|^10|^11|^12|^13|14.x-dev|dev-master|dev-main | — | — |
illuminate/support Version ^8|^9|^10|^11|^12|^13|14.x-dev|dev-master|dev-main | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.