The package is well documented, licensed, and backed by a repository with tests and release notes. Its workflow leaves all eight actions unpinned and the repository has no security policy, while its very recent launch provides little evidence of sustained maintenance.
68%
Total Score
50
81
67
This is the first release, published moments ago, so there is no track record of maintenance or release consistency yet; its recency makes this an expected early-stage limitation rather than abandonment evidence.
There were no commits from active maintainers in the preceding three months, but the package and repository were created only moments ago, so this is limited evidence rather than a sign of a stalled mature project.
Composer build tooling is present, but no security scanning tool is reported, leaving a modest repository-hygiene gap.
The repository has no security policy, reducing transparency about vulnerability reporting and handling for a package that makes network requests.
Version 0.1.0 is a non-stable major release, so the API may change substantially even though it is not marked as a prerelease.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
illuminate/http Version ^12.0|^13.0 | — | — |
illuminate/support Version ^12.0|^13.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.