It includes a clear MIT license, tests, release notes, and a matching repository. Its workflow is fully audited but uses three unpinned actions, leaving a modest reproducibility gap.
55%
Total Score
0
100
78
67
The package has had no releases in nearly 6 years, and only six releases overall. That long release silence is meaningful abandonment risk for a dependency.
There were no commits and no active maintainers in the last 3 months, consistent with a repository last pushed about 5 years ago. This materially raises abandonment risk.
The repository has only 2 stars, 4 forks, and no watchers. This provides little external adoption evidence, though low popularity alone does not make a small stable package unhealthy.
Composer is used for the build, but no security scanning tools are present. The missing scanning is a modest transparency and maintenance gap, not evidence of compromise.
The repository has no security policy. For a small icon package this is a limited gap, but it leaves vulnerability reporting and response expectations undocumented.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
illuminate/support Version ^7.14|^8.0 | — | — |
blade-ui-kit/blade-icons Version ^0.4.5 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.