The package is licensed, documented, and tested, with no install-time scripts or deprecation. Its repository lacks security tooling and a security policy, so ongoing assurance is limited.
68%
Total Score
50
100
83
83
Only one registry maintainer is listed, which is a modest continuity risk for a user-owned project without organizational backing evidence.
The registry namespace and repository owner match, but both are user-owned rather than organization-backed, so there is no observed institutional maintenance cushion.
This is a young package at 67 days old with only one release, so there is limited evidence of sustained maintenance or release discipline.
The repository has 2 stars and no forks or watchers. This is weak supporting evidence, though the package is only 67 days old and popularity is not decisive.
Composer build tooling is present, but no security scanning tools were detected, leaving a gap in automated assurance.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
illuminate/bus Version ^11.0|^12.0 | — | — |
morilog/jalali Version ^3.0 | — | — |
illuminate/http Version ^11.0|^12.0 | — | — |
illuminate/queue Version ^11.0|^12.0 | — | — |
illuminate/console Version ^11.0|^12.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.