The package includes a readable usage guide, a matching repository, and repository tests. Its MIT declaration and lack of install-time scripts reduce adoption and installation concerns, but the project offers no security policy.
38%
Total Score
0
71
75
Only two releases were published, both in March 2019, with no release in about 7 years. That long gap is strong evidence of abandonment risk for a dependency.
The repository recorded no commits and no active maintainers in the last 3 months, consistent with the absence of releases since March 2019.
The repository has zero stars, forks, and watchers. Popularity is only supporting evidence, but this provides no external adoption signal to offset the inactive project.
The repository has no security policy, reducing transparency about how vulnerabilities should be reported and handled.
Version 0.0.2 is an early pre-1.0 release, so its API maturity and long-term compatibility are less established, even though it is not marked as a prerelease.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
guzzlehttp/guzzle Version ^6.2 | — | — |
illuminate/support Version 5.0.*|5.1.*|5.2.*|5.3.*|5.4.*|5.5.*|5.6.*|5.7.*|5.8.* | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.