The package is licensed, documented, stable, and has a recent release with notes. Its workflow has no dangerous findings, but unpinned actions and no security policy leave avoidable maintenance gaps.
67%
Total Score
50
100
67
One contributor made all commits in the last three months, leaving maintenance dependent on a single active contributor.
Only one commit was recorded in the last three months, showing limited recent development activity and raising maintenance concerns.
The repository has no published security policy, reducing transparency about vulnerability reporting and response.
The workflow audit completed cleanly with no dangerous findings, but all three action references are unpinned, weakening build reproducibility.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
doctrine/dbal Version ^3.1|^4.0 | — | — |
illuminate/bus Version ^9.0|^10.0|^11.0|^12.0|^13.0 | — | — |
illuminate/events Version ^9.0|^10.0|^11.0|^12.0|^13.0 | — | — |
illuminate/console Version ^9.0|^10.0|^11.0|^12.0|^13.0 | — | — |
illuminate/database Version ^9.0|^10.0|^11.0|^12.0|^13.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.