A single maintainer and no security scanning reduce confidence for a production-facing Laravel library. The MIT declaration, matching repository, and stable v1 release provide useful transparency.
61%
Total Score
50
100
88
83
Only one registry maintainer is listed, leaving limited visible publishing redundancy. The linked repository is user-owned, so this is a real capacity concern rather than organization-backed publishing hygiene.
The package and repository are owned by the same individual account, confirming an ownership match but offering less organizational backing than a team-owned project.
All three releases arrived within about 30 minutes on February 6, 2026, and no later release is shown; the latest release is about 7 months old. This suggests an early burst followed by uncertain ongoing maintenance.
There were no new or closed issues or pull requests in the last month, and the repository has only one open-issue count of zero. Combined with the quiet release history, this provides little evidence of active maintenance.
Composer build tooling is present, but no security scanning tools are configured. That leaves an avoidable verification gap for a library handling RabbitMQ and Redis-backed event processing.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
illuminate/support Version ^11.0|^12.0 | — | — |
illuminate/contracts Version ^11.0|^12.0 | — | — |
php-amqplib/php-amqplib Version ^3.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.