It includes tests, a substantial README, matching source, and release notes for this version. The missing security policy and three unpinned workflow actions weaken project hygiene, while recent inactivity warrants monitoring.
67%
Total Score
50
89
50
The repository had zero commits and zero active maintainers in the last three months. The recent release partly offsets this, but the current maintenance signal is weak.
The repository has only 4 stars, 0 forks, and 1 watcher. Low popularity is supporting evidence rather than a health verdict, but it provides little external resilience.
Composer build tooling is present, but no security scanning tools were detected. This is a modest transparency and maintenance gap.
The repository has no published security policy, leaving vulnerability reporting and response expectations unclear for an authentication package.
The only workflow was fully analyzed with no dangerous triggers or audit findings, but all 3 action references are unpinned. The absent top-level permissions block is acceptable on its own.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
lcobucci/jwt Version ^4.0 | — | — |
nesbot/carbon Version ^2.0 || ^3.0 | — | — |
illuminate/auth Version ^7.0 || ^8.0 || ^9.0 || ^10.0 || ^11.0 || ^12.0 | — | — |
illuminate/cache Version ^7.0 || ^8.0 || ^9.0 || ^10.0 || ^11.0 || ^12.0 | — | — |
vlucas/phpdotenv Version ^4.0 || ^5.2 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.