Clear documentation, tests, and a matching repository make the package easy to evaluate. It is newly published, lacks a security policy, and uses one unpinned workflow action.
76%
Total Score
100
79
67
This is the package's first release, published today, so there is no track record for release consistency or long-term maintenance yet.
Composer build tooling is present, but no security-scanning tool was detected, leaving a modest transparency and maintenance gap.
The repository has no security policy, so users lack documented guidance for reporting vulnerabilities or understanding the project's security process.
Version 0.1.0 is a stable, non-prerelease release, but the pre-1.0 version indicates an early project with limited demonstrated maturity.
The workflow audit completed cleanly with no dangerous triggers or findings, and its job-level permissions are scoped; however, its single action reference is unpinned, which weakens reproducibility.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
illuminate/http Version ^11.0|^12.0|^13.0 | — | — |
laravel/prompts Version ^0.1.20|^0.2|^0.3 | — | — |
illuminate/console Version ^11.0|^12.0|^13.0 | — | — |
illuminate/support Version ^11.0|^12.0|^13.0 | — | — |
illuminate/filesystem Version ^11.0|^12.0|^13.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.