The MIT license, clear README, and small runtime dependency set make the package straightforward to evaluate and integrate. Its unarchived repository and lack of deprecation help, but there is no security policy or recent project activity.
42%
Total Score
50
100
88
75
The latest release was published in January 2019, with no releases in the last 12 months. This long period without updates is a meaningful abandonment concern for a framework integration package.
There were no commits and no active maintainers in the last three months. Combined with the old latest release, this strongly increases the risk that compatibility issues will go unanswered.
The repository uses Composer, but no security-scanning tools were detected. For a small package this is a hygiene gap rather than a severe risk, partly offset by its simple dependency profile.
No repository security policy was found. This weakens transparency about reporting and handling vulnerabilities, though it does not by itself show that the package is unsafe.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
illuminate/support Version ^5.7 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.