Usable with caveats: it has clear documentation, tests, licensing, and a matching source repository, but maintenance appears stalled after its only release about a year ago. Adopt it only if you are comfortable owning future fixes.
58%
Total Score
50
79
75
This is a 373-day-old package with only one release and no releases in the last 12 months, which leaves its maintenance track record unproven. The GitHub release notes for v1.0.0 provide some release transparency but do not offset the lack of follow-up releases.
The repository has had zero commits and zero active maintainers in the last three months, and its last push was around one year ago. That indicates potentially stalled maintenance for a package with only one release.
The repository has zero stars, forks, and watchers, providing no supporting evidence of community use or review. Popularity is only supporting evidence, so this reinforces rather than determines the cautionary assessment.
Composer build tooling is present, but no security scanning tools were detected. The lack of scanning is a modest transparency and maintenance gap, not a severe risk by itself.
No repository security policy was found, leaving vulnerability-reporting expectations unclear. This matters for a reusable Laravel library but is less significant than the observed maintenance gap.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
illuminate/support Version ^10.0|^11.0 | — | — |
illuminate/database Version ^10.0|^11.0 | — | — |
illuminate/pagination Version ^10.0|^11.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.