This release is usable but very new and not yet proven as a maintained dependency. It has a stable v1.1.0 release, a matching and README-referencing repository, tests, a substantial README, a coherent 26-file package tree, no deprecation, and no install-time lifecycle scripts. However, the package is less than a day old with only two releases, has no observed commit or issue activity beyond its initial publication, has no security policy or security scanning, and has no workflow automation; these are meaningful maturity and transparency gaps rather than evidence of maliciousness. The package may be reasonable for evaluation or controlled use, but production adoption should account for its limited maintenance history and single registry maintainer.
62%
Total Score
50
100
83
90
The repository is owned by an individual GitHub user rather than an organization, so the single registry maintainer is consistent with limited project backing and leaves bus-factor concerns unresolved.
The package is less than a day old and has only two releases, published about 14 minutes apart. This provides too little history to establish maintenance reliability or release stability.
There were zero commits and zero active maintainers observed over the last three months. Because the repository is newly created, this is not strong evidence of abandonment, but it does mean there is no demonstrated ongoing maintenance record.
There are no issues or pull requests and no activity in the measured month. Given the package's age this is inconclusive rather than a severe concern, but it offers no evidence of a responsive maintenance community.
The repository has zero stars, forks, and watchers. For a package published less than a day ago this is expected and not decisive, but it provides no supporting adoption evidence.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
illuminate/http Version ^10.0|^11.0|^12.0 | — | — |
illuminate/mail Version ^10.0|^11.0|^12.0 | — | — |
illuminate/events Version ^10.0|^11.0|^12.0 | — | — |
illuminate/routing Version ^10.0|^11.0|^12.0 | — | — |
illuminate/support Version ^10.0|^11.0|^12.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.