The package has a clear README and a matching source repository, with a permissive license and modest dependency surface. Organizational ownership and a non-archived repository help, but the project offers little recent maintenance or security transparency.
43%
Total Score
100
100
64
50
The latest release was published in May 2020, more than 6 years ago, with no releases in the last 12 months. This is strong evidence of abandonment risk despite a previously regular release interval.
Composer build tooling is present, but no security-scanning tools were detected. This is a transparency and maintenance gap, though it is less serious than the prolonged lack of releases.
The repository is not archived, which is a useful compensating signal. However, its last push was in May 2020, so this does not offset the separate evidence of stale maintenance.
The repository has no security policy. For a package that integrates with queue infrastructure, the missing disclosure process reduces maintenance transparency.
The assessed release is v0.5.0 rather than a stable major version, which suggests limited maturity. It is not marked as a prerelease, so this is a moderate concern rather than a severe stability warning.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
illuminate/log Version ~5.6|~5.7|~5.8|^6.0 | — | — |
illuminate/queue Version ~5.6|~5.7|~5.8|^6.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.