The package has a clear README, repository tests, release notes, and matching source repository, while its dependency set is modest. It lacks security scanning and a security policy, so operational transparency is limited.
68%
Total Score
50
100
81
67
The package is maintained under a user-owned repository rather than an organization, so the available backing is limited to an individual owner.
This is a young package with one release, published 220 days ago, so there is not enough history to establish sustained maintenance. The linked repository and exact-version release notes provide some supporting transparency.
The repository has zero stars, forks, and watchers, so there is no external adoption evidence to offset the package's short release history. Popularity is supporting evidence rather than a requirement for a small package.
Composer build tooling is present, but no security-scanning tool was detected. That is a transparency and maintenance gap, not evidence that the package is unsafe.
The repository has no security policy, leaving the project's vulnerability-reporting and response process undocumented.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
illuminate/console Version ^10.0|^11.0|^12.0 | — | — |
illuminate/support Version ^10.0|^11.0|^12.0 | — | — |
illuminate/validation Version ^10.0|^11.0|^12.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.