The package includes substantial documentation, tests, a changelog, and an MIT declaration. Its security process is limited, with no repository policy or scanning tools, so ongoing maintenance deserves attention.
58%
Total Score
50
100
79
75
The package is only 46 days old but has 12 releases, with a median interval of about 11 hours. This shows active initial iteration but provides little evidence of long-term stability.
The repository records zero commits and zero active maintainers over the last 3 months. Because the package is only 46 days old and was pushed at the latest release, this is concerning but not conclusive abandonment evidence.
Composer build tooling is present, but no security-scanning tools are configured. This is a modest transparency and maintenance gap rather than a severe risk by itself.
The repository has no security policy. That weakens disclosure transparency for a package handling LLM interactions and tool-related runtime behavior.
Version v0.5.2 is not a stable major release, so APIs and behavior may still change substantially. The absence of prereleases does not offset the 0.x maturity level.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
illuminate/http Version ^11.0|^12.0|^13.0 | — | — |
illuminate/support Version ^11.0|^12.0|^13.0 | — | — |
illuminate/database Version ^11.0|^12.0|^13.0 | — | — |
illuminate/contracts Version ^11.0|^12.0|^13.0 | — | — |
rawphp/laravel-capabilities Version * | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.