Usable with caveats: the package is actively backed by an organization, has substantial documentation, tests, and a matching source repository. Its early 0.x status, very small contributor base, low adoption, and missing security policy require extra review before relying on it for critical workflows.
67%
Total Score
67
78
80
The package has 15 releases over about two years and two releases in the last 12 months, showing ongoing but relatively limited release activity.
All recent commits came from one contributor, creating concentration risk; the organization-owned repository provides some ability to hand maintenance off, so this is not a severe risk.
Only 2 commits from 1 active maintainer were recorded in the last three months, showing recent activity but a thin maintenance base.
The repository has only 1 star and 2 forks, indicating limited external adoption or review; this is a supporting concern rather than evidence that the package is unfit.
The repository uses Composer build tooling but reports no security-scanning tools, leaving less automated coverage for dependency or code-security issues.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
illuminate/support Version ^12.0 || ^13.0 | — | — |
sourcetoad/enhanced-resources Version ^7.3 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.