The repository includes tests and a clear MIT license, but it has no security scanning or security policy. Its single-maintainer footprint and absent recent activity leave little evidence of ongoing support.
35%
Total Score
25
81
50
The package has 42 releases but none in the last 12 months, and its latest release was published over eight years ago. That long release gap is strong evidence of abandonment risk.
There were zero commits and zero active maintainers in the last three months, consistent with a project that has not received active maintenance for years.
There were no new or merged pull requests and no issue activity in the last month. This supports the broader picture of an inactive project, although the open-issues count is unknown.
The repository uses Composer, but no security-scanning tools were detected. For an authentication library, that weakens ongoing security-maintenance evidence.
No security policy is present in the repository, leaving no documented path for reporting vulnerabilities in a security-sensitive authentication package.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
namshi/jose Version ^7.0 | — | — |
nesbot/carbon Version ^1.0 | — | — |
illuminate/auth Version 5.1.* || 5.2.* || 5.3.* || 5.4.* || 5.5.* | — | — |
illuminate/http Version 5.1.* || 5.2.* || 5.3.* || 5.4.* || 5.5.* | — | — |
illuminate/support Version 5.1.* || 5.2.* || 5.3.* || 5.4.* || 5.5.* | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.