Package Health

illuminate/database

Clear licensing, useful documentation, and organization backing support dependable adoption. The workflow is mostly clean, though its sole action is unpinned and the repository lacks a security policy.

Latest v13.33.0PackagistPackagist

84%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

83

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

94

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Are you affected? Scan for Free

Health Score Breakdown

Repo commit activitycaution

No commits or active maintainers were recorded in the last three months, which is a maintenance warning, although the package's frequent recent releases and current repository push provide meaningful counterevidence.

Repo toolingcaution

Composer is used for the build, but no security scanning tool was detected; this is a modest transparency and hygiene gap rather than evidence of abandonment.

Security policycaution

The repository has no security policy, leaving vulnerability-reporting expectations undocumented for a widely used database component.

Workflow auditcaution

The only workflow was fully analyzed with no audit findings or untrusted checkout/script-injection sinks. Its one action is unpinned, which is a limited reproducibility and supply-chain hygiene concern.

Vulnerabilities

TitleVersionsSeverity
CVE-2020-24940
illuminate/database is vulnerable to Security Vulnerability in versions 5.5.0 - 5.5.44, 6.0.0 - 6.18.34 and 7.0.0 - 7.23.2.
5.5.0 - 5.5.446.0.0 - 6.18.347.0.0 - 7.23.2
High

Package versions

Maintainers

Taylor Otwell

Direct Dependencies

DependencyLast ReleaseScore
brick/math
Version ^0.14.2 || ^0.15 || ^0.16 || ^0.17 || ^0.18 || ^0.19 || ^0.20 || ^1.0
—
—
illuminate/support
Version ^13.0
—
—
illuminate/container
Version ^13.0
—
—
illuminate/contracts
Version ^13.0
—
—
illuminate/macroable
Version ^13.0
—
—

Weekly Downloads

Info

Last Published
6 days ago
Created
14 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform