Regular releases and a current, unarchived repository support continued maintenance. The MIT license, tests, and security scanning are reassuring.
67%
Total Score
75
50
94
50
The framework declares 18 runtime dependencies, including database, mail, storage, templating, and configuration components. This is a substantial dependency surface that increases maintenance and update burden.
All 63 recent commits came from one contributor, leaving maintenance dependent on a single person and creating a meaningful continuity risk.
The repository has only 2 stars and no forks or watchers. Popularity is supporting evidence rather than a verdict, but these numbers provide little evidence of a broad user or contributor community.
The repository has no published security policy, which leaves vulnerability reporting and response expectations unclear for a security-sensitive web framework.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
twig/twig Version ^3.0 | — | — |
filp/whoops Version ^2.16 | — | — |
monolog/monolog Version ^3.0 | — | — |
vlucas/phpdotenv Version ^5.6 | — | — |
illuminate/events Version ^10.13 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.