The package includes a usable README, tests, matching MIT licensing, and no install-time scripts. Its repository has no security scanning, and the small project footprint provides limited independent assurance.
58%
Total Score
50
86
100
Only three releases were published, all within about 15 minutes on the same day, with no later release activity over the following 11 months. This suggests a lightly maintained fork rather than an established release cadence.
There were zero commits and zero active maintainers during the last three months, consistent with the nearly year-long gap since the last push. This materially raises abandonment risk.
The repository uses Composer and Make, but no security-scanning tools were detected. That weakens ongoing assurance for a file-upload package.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
illuminate/http Version ^6.0 || ^7.0 || ^8.0 || ^9.0 || ^10.0 || ^11.0 || ^12.0 | — | — |
league/flysystem Version >=2.0.0 | — | — |
illuminate/config Version ^6.0 || ^7.0 || ^8.0 || ^9.0 || ^10.0 || ^11.0 || ^12.0 | — | — |
illuminate/support Version ^6.0 || ^7.0 || ^8.0 || ^9.0 || ^10.0 || ^11.0 || ^12.0 | — | — |
intervention/image Version >=3.11.3 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.