MIT licensing, a complete source tree, and automated dependency scanning provide useful baseline transparency. The package is a small, organization-backed project, but its consumer documentation is minimal and its release and maintenance record is weak.
44%
Total Score
63
50
81
50
Only one release exists, and it was published over three years ago with no releases in the last 12 months. That is strong evidence of limited ongoing maintenance.
There were zero commits and zero active maintainers in the last three months, reinforcing the release-history evidence of stalled maintenance.
Nine runtime dependencies, including several Laravel components, create meaningful compatibility and update obligations for a package with only one release, but the profile is not intrinsically excessive.
The package includes a README, but it is only 55 characters and gives consumers little integration guidance. Missing tests and changelog files are expected packaging gaps and are not penalized here.
There are no new or closed issues in the last month and two open pull requests, providing no evidence of active issue handling.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
illuminate/http Version ^9.0 | — | — |
illuminate/mail Version ^9.0 | — | — |
illuminate/routing Version ^9.0 | — | — |
illuminate/support Version ^9.0 | — | — |
illuminate/database Version ^9.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.