Documentation is clear, and the package includes tests with a small runtime dependency set. The project has no security scanning and no maintenance history beyond this initial release, so pinning it carries elevated uncertainty.
68%
Total Score
50
80
50
This is the first release and the package is 0 days old, so there is no release track record or demonstrated maintenance cadence yet.
The repository has 0 commits in the last 3 months and 0 active maintainers, but the package was only released today, making this more a lack of evidence than proof of abandonment.
Composer build tooling is present, but no security scanning tools were detected, leaving an avoidable verification gap for a package that handles application logs and API credentials.
The repository has no security policy, reducing transparency about how consumers should report vulnerabilities or receive security fixes.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
monolog/monolog Version ^3.0 | — | — |
illuminate/support Version ^11.0|^12.0|^13.0 | — | — |
illuminate/contracts Version ^11.0|^12.0|^13.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.