The package is small and has a clear MIT declaration with no install-time scripts. Its single-maintainer project has no README, security policy, or security scanning, while the lack of follow-up commits leaves long-term support unproven.
58%
Total Score
50
79
75
The package has no README, which is a real documentation gap for a Laravel library that consumers must integrate. Missing tests and changelog files are normal for published artifacts and are not treated as additional concerns.
This is the only release, published 69 days ago, so the project has little track record and its release cadence cannot yet be established. Its recent age partly explains the limited history but does not remove the maintenance uncertainty.
The repository recorded zero commits and zero active maintainers in the last three months, despite being only 69 days old. That leaves no demonstrated post-release maintenance capacity.
Composer is used as the build tool, which fits the package ecosystem, but no security scanning tool is configured. The missing scanner is a hygiene gap rather than evidence that the release is unsafe.
The repository has no security policy, so users have no documented reporting or response path. This lowers transparency for a package that handles file-management functionality.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
illuminate/support Version ^11.0|^12.0 | — | — |
illuminate/database Version ^11.0|^12.0 | — | — |
illuminate/filesystem Version ^11.0|^12.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.