Healthy and reasonable to adopt, with a short but active history and clear project backing. The main caveat is limited security-process maturity: no security policy or automated security scanning is reported, and workflow permissions are not explicitly restricted.
78%
Total Score
100
100
83
67
The package is young at 47 days and has 11 releases, with releases arriving roughly every 4 hours on average. This shows active development, though the short history limits evidence of long-term stability.
The repository has zero stars, forks, and watchers. Because the package is only 47 days old, this is weak supporting evidence rather than a decisive maintenance concern.
Composer build tooling is present, but no automated security-scanning tool was detected. The missing security automation is a modest maturity gap rather than evidence that the package is unsafe.
The repository has no SECURITY.md or other detected security policy, leaving vulnerability reporting and response expectations undocumented.
All three analyzed workflows lack top-level token-permission declarations. No workflow requests top-level write access, but explicitly declaring least-privilege permissions would improve CI transparency and control.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
illuminate/support Version ^13.0 | — | — |
illuminate/database Version ^13.0 | — | — |
liberusoftware/module-manager Version ^1.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.