It has a long release history, a current stable release, release notes, repository tests, and a small dependency surface. Missing security policy and an unpinned container image add maintenance hygiene risk.
68%
Total Score
75
100
100
75
The repository recorded zero commits and zero active maintainers during the last three months, which is a meaningful sign of recently slowed maintenance despite the broader release history.
No repository security policy was found, leaving vulnerability-reporting expectations undocumented; this is a transparency gap rather than evidence of abandonment.
All three workflows were analyzed without untrusted triggers or script-injection sinks, but all seven action references are unpinned and the audit found a high-confidence unpinned container image.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
illuminate/http Version ^10.0|^11.0|^12.0|^13.0 | — | — |
illuminate/support Version ^10.0|^11.0|^12.0|^13.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.