Package Health

illuminate/mail

The package is MIT-licensed, non-deprecated, and has no install-time scripts. The linked project has no recent commits or security policy, and its sole workflow uses an unpinned action.

Latest v13.33.0PackagistPackagist

78%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

75

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

93

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

67

Health Score Breakdown

Repo commit activitycaution

No commits and no active maintainers were recorded in the last three months. This conflicts with the very frequent registry releases and is a maintenance caution rather than evidence of abandonment by itself.

Repo toolingcaution

Composer build tooling is present, but no security scanning tools were detected. That is a modest transparency and hygiene gap, not a standalone adoption blocker.

Security policycaution

The repository has no security policy, leaving vulnerability reporting and response expectations undocumented.

Workflow auditcaution

The single workflow uses a pull_request_target trigger without an observed untrusted checkout or script-injection sink, but its one action is unpinned. The audit completed fully and found no higher-severity issues.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Taylor Otwell

Direct Dependencies

DependencyLast ReleaseScore
psr/log
Version ^1.0 || ^2.0 || ^3.0
—
—
symfony/mailer
Version ^7.4.0 || ^8.0.0
—
—
league/commonmark
Version ^2.7
—
—
illuminate/support
Version ^13.0
—
—
illuminate/container
Version ^13.0
—
—

Weekly Downloads

Info

Last Published
19 days ago
Created
13 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform