It has a clear MIT license, documented usage, repository tests, and a release supporting Laravel 13. The small dependency set and organization backing are reassuring, but CI hygiene needs attention.
68%
Total Score
75
100
94
75
The repository recorded zero commits and zero active maintainers in the last three months, despite the latest release being about seven months earlier. This indicates a meaningful recent maintenance lull and raises abandonment risk.
Composer build tooling is present, but no security scanning tools were detected. For a small PHP library this is a hygiene gap rather than evidence of unsafe code, but it reduces automated oversight.
The repository has no published security policy. This weakens vulnerability-reporting transparency, though it is a moderate process gap rather than a direct dependency-health failure.
All three workflows were analyzed with no untrusted triggers or script-injection sinks, but the audit found a high-confidence unpinned container image and all seven action references are unpinned. This is a supply-chain hygiene concern in CI, without evidence of an immediately dangerous workflow.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
illuminate/cache Version ^10.0|^11.0|^12.0|^13.0 | — | — |
illuminate/redis Version ^10.0|^11.0|^12.0|^13.0 | — | — |
artisansdk/ratelimiter Version ^1.1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.