The package includes tests, release notes, a clear license, and no install-time scripts. Its organization-backed repository is clearly identified, but the project has limited operating history and few independent maintenance signals.
64%
Total Score
67
88
75
The package is only 53 days old with three releases, all published within a few hours on the first day. This shows active initial delivery but provides little evidence of sustained maintenance.
One contributor made all three recent commits, concentrating maintenance knowledge in a single person. The organization-owned repository partly offsets handoff risk, but no second active contributor is shown.
The repository recorded three commits in the last three months, all during this very young project's initial period. This is some evidence of activity but not yet a durable maintenance record.
Composer build tooling is present, but no security-scanning tool was detected. That is a modest transparency and maintenance gap for a package handling application cache operations.
The repository has no security policy. This does not show a security defect, but it leaves the reporting and response process undocumented.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
illuminate/auth Version ^11.0|^12.0|^13.0 | — | — |
illuminate/http Version ^11.0|^12.0|^13.0 | — | — |
illuminate/view Version ^11.0|^12.0|^13.0 | — | — |
nuewire/support Version ^1.0 | — | — |
illuminate/cache Version ^11.0|^12.0|^13.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.