It includes a clear README, tests, release notes, and a matching license. The project state provides little assurance for future fixes, while workflow references remain unpinned.
12%
Total Score
0
50
50
Packagist marks the entire package as abandoned, with no replacement specified. This is a severe adoption risk because the registry explicitly signals that future maintenance should not be expected.
The package has seven releases since November 2021, but none in the last 12 months; its latest release was about 3 years ago. This indicates prolonged inactivity rather than an actively maintained release line.
The repository recorded zero commits and zero active maintainers in the last 3 months. Together with the archived state, this provides no recent evidence of maintenance capacity.
The linked repository is archived, and its last push was about 2 years and 10 months ago. An archived source repository is a severe abandonment risk for a dependency.
The repository has no security policy. This reduces transparency for reporting and handling vulnerabilities, although the package's abandoned and archived status is the more serious concern.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
illuminate/support Version ^9.0 || ^10.0 || ^11.0 | — | — |
illuminate/database Version ^9.0 || ^10.0 || ^11.0 | — | — |
illuminate/contracts Version ^9.0 || ^10.0 || ^11.0 | — | — |
mpyw/unique-violation-detector Version ^1.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.