Clear documentation, tests, and licensing make adoption easier. The project is young and maintained by one person, so long-term continuity remains uncertain.
72%
Total Score
67
81
67
The repository is owned by an individual user rather than an organization, so the single-maintainer concentration represents a real handoff and continuity risk rather than normal organizational publishing structure.
The package is only 65 days old, but it has had 9 releases in that period, showing active early development rather than abandonment. Its short history leaves long-term maintenance unproven.
One contributor made 100% of the 20 recent commits, leaving the project dependent on a single person's availability. This is a meaningful continuity risk for a user-owned repository.
The repository has 5 stars and no forks or watchers, indicating limited external adoption. Popularity is only supporting evidence, but this provides little independent validation for a young package.
Composer build tooling is present, but no security-scanning tool was detected. The missing scanner is a modest transparency and maintenance gap, not evidence of an unsafe release by itself.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
mpdf/mpdf Version ^8.2 | — | — |
illuminate/view Version ^11.0|^12.0|^13.0 | — | — |
league/commonmark Version ^2.0 | — | — |
illuminate/routing Version ^11.0|^12.0|^13.0 | — | — |
illuminate/support Version ^11.0|^12.0|^13.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.