Usable with caveats: the package is licensed, documented, stable, and backed by a matching repository with tests. However, its last release was over three years ago and there has been no recent commit activity, so maintenance may have stalled.
58%
Total Score
75
100
81
83
The package has 16 releases since July 2021, but the latest release was in July 2023 and there have been no releases in the last 12 months. This is a meaningful maintenance concern for a library dependency.
There were zero commits and zero active maintainers in the last three months. Combined with the old latest release, this indicates little recent maintenance capacity.
The repository uses Composer for builds, but no security scanning tools were detected. For a small PHP package this is a hygiene gap, though not by itself evidence that the release is unsafe.
The linked repository is not archived, but it was last pushed in July 2023. Its active status is reassuring, while the old push date is consistent with the maintenance concern from the release history.
The repository has no security policy, which makes vulnerability reporting less transparent. This is a moderate hygiene concern, not a standalone reason to reject the package.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
spatie/image Version ^2.2 | — | — |
illuminate/support Version ^9.0|^10.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.