The package is clearly identified and easy to integrate, with a README, matching source repository, and MIT licensing. Its lone maintainer, zero recent releases, and minimal repository activity indicate substantial abandonment risk for a current dependency.
42%
Total Score
50
71
50
Only two releases exist, both from March 2018, with no releases in the last 12 months. This long period without a release materially increases abandonment and compatibility risk.
The package has one registry maintainer. That is a thin publishing base and leaves little visible redundancy if the maintainer stops maintaining the project.
The repository has zero stars and forks and only one watcher. Popularity is not required for health, but these values provide no supporting evidence of an active user or contributor community.
The repository is not archived, which is a compensating positive, but it was last pushed in March 2018. The inactive repository still points to substantial maintenance risk.
The repository has no security policy. For a small package this is a hygiene gap rather than a standalone severe risk, but it reduces transparency for reporting and handling issues.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
illuminate/support Version 5.* | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.