Usable with caveats: it has a current release, organizational backing, a clear MIT license, and no deprecation or install-time scripts. However, the repository has had no commits in three months, the project is very small, and it lacks a README, tests, and a security policy.
62%
Total Score
75
100
64
83
The package has no README, which makes library integration harder; absent tests and changelog files are not inherently concerning for a published artifact. Release notes for this exact version provide some documentation of the change.
The package is about 2 years old with three releases, including one in the last 12 months. The long median interval of about 290 days indicates slow evolution, but not abandonment by itself.
There were no commits and no active maintainers during the last three months. The recent release and repository push provide some compensating evidence, but ongoing maintenance capacity remains uncertain.
The repository has no stars or forks and only one watcher. This confirms a very small user and contributor footprint, though popularity alone is supporting evidence rather than a health verdict.
Composer build tooling is present, but no security scanning tools were detected. For a small authentication package, the missing security automation is a meaningful hygiene gap.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
psr/cache Version ^2.0||^3.0 | — | — |
google/auth Version ^1.50 | — | — |
illuminate/cache Version ^6.0|^7.0|^8.0|^9.0|^10.0|^11.0|^12.0 | — | — |
guzzlehttp/guzzle Version ^6.2|^7.0 | — | — |
illuminate/contracts Version ^6.0|^7.0|^8.0|^9.0|^10.0|^11.0|^12.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.