Usable with caveats: the package is small, stable, and backed by an organization, but it has had no registry release in about two years and no recent repository commits. Its missing README and security policy also make ongoing support and safe integration harder to assess.
58%
Total Score
75
83
75
The artifact has no README, which makes integration less transparent for consumers. Tests and a changelog are not expected in the published artifact, while release notes for this version provide some documentation of the change.
The package has had no release in about two years, despite only three releases overall. This is a meaningful maintenance concern for a dependency, although the repository is not archived and the package has a stable version.
There were no commits and no active maintainers in the last three months, reinforcing the concern that maintenance has stalled. The organization-backed repository and prior push provide some compensating evidence but do not offset the lack of current activity.
The repository has no security policy, leaving no documented process for reporting or handling vulnerabilities. This is a transparency gap, though the package has no reported dangerous workflow configuration.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
filament/filament Version ^3.2 | — | — |
illuminate/support Version ^10 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.