The package has a clear README, a declared MIT license, and no install-time scripts. Its short history and single-contributor maintenance leave limited evidence of long-term support.
58%
Total Score
50
88
75
The repository is owned by an individual user rather than an organization. Combined with the single-contributor activity, there is no organizational backing shown to provide maintenance handoff.
The package is only 80 days old and has had two releases, with no release activity after the initial two-day period. That is limited evidence of sustained maintenance, though the short age makes the history immature rather than abandoned.
One contributor made 100% of the two commits in the last three months. That concentration leaves the project dependent on a single maintainer if fixes or updates are needed.
Only two commits were recorded in the last three months, all near the initial release. This is consistent with a small new package but provides little evidence of ongoing maintenance.
Composer build tooling is present, but no security scanning tools were detected. For this small package that is a modest transparency gap, not evidence of unsafe code.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
illuminate/view Version ^10.0|^11.0|^12.0|^13.0 | — | — |
illuminate/support Version ^10.0|^11.0|^12.0|^13.0 | — | — |
illuminate/contracts Version ^10.0|^11.0|^12.0|^13.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.