A clear README, tests, changelog, MIT license, and small runtime dependency set make the package straightforward to evaluate. No security policy or scanning leaves response practices less visible.
57%
Total Score
33
100
78
88
There were zero commits and zero active maintainers in the last three months, consistent with the roughly six-month gap since the initial burst and raising abandonment risk.
The source repository is owned by an individual account, so the two registry maintainers do not indicate organizational backing that would compensate for the limited observed activity.
Five releases were published within about 8 minutes on the first release day, then no additional releases were recorded across the following roughly six months; this suggests a burst of initial activity without demonstrated follow-through.
There are no open issues or pull requests and no recent issue or pull-request activity; this offers no evidence of an active user or maintainer feedback loop.
The repository has zero stars, forks, and watchers. For a package only about six months old this is supporting evidence of limited adoption, not proof of failure by itself.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
illuminate/http Version ^10.0|^11.0 | — | — |
illuminate/support Version ^10.0|^11.0 | — | — |
illuminate/database Version ^10.0|^11.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.