Usable with caveats: the package is licensed, tested, documented, and not deprecated, but it is very new and has had no commits or maintainer activity for about three months. Its small user base and lack of security tooling also make long-term support uncertain.
58%
Total Score
25
100
72
80
There were 0 commits and 0 active maintainers in the last three months, despite the package being only about 59 days old. This is the clearest maintenance concern and leaves no evidence of ongoing fixes or development.
The repository is owned by an individual rather than an organization, so the single registry maintainer does not benefit from organizational backing and support capacity appears concentrated.
This is a young package with only one release, first published about 59 days ago. That limits evidence of sustained maintenance and release reliability.
The repository has only 3 stars, 0 forks, and 1 watcher. Low popularity is not decisive for a small package, but it provides little independent evidence of adoption or review.
Composer build tooling is present, but no security scanning tools are configured, leaving a gap in automated security hygiene.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
illuminate/http Version ^11.0|^12.0 | — | — |
illuminate/view Version ^11.0|^12.0 | — | — |
illuminate/events Version ^11.0|^12.0 | — | — |
illuminate/routing Version ^11.0|^12.0 | — | — |
illuminate/support Version ^11.0|^12.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.