The README is thorough, the dependency set is small, and the package is backed by an organization. Zero commits in about six months, no security policy, and no security scanning make long-term support less certain.
60%
Total Score
75
100
88
50
The package made 11 releases in the last 12 months, but all appear concentrated in its first few weeks and the latest release is about six months old. This shows an initially active project with uncertain recent maintenance.
The repository recorded zero commits and zero active maintainers over the last three months. With the latest push about six months ago, this is meaningful evidence of stalled maintenance.
Composer build tooling is present, but no security scanning tools were detected. That is a modest transparency and maintenance gap for a package handling API authentication.
The repository has no security policy. This does not establish a vulnerability, but it leaves the process for reporting and handling security issues unclear.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
illuminate/http Version ^11.0|^12.0|^13.0 | — | — |
illuminate/support Version ^11.0|^12.0|^13.0 | — | — |
illuminate/contracts Version ^11.0|^12.0|^13.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.