Usable with caveats: it is clearly licensed, documented, tested in the repository, and not deprecated or archived. However, it has had only one release, no commits in the last three months, and no measurable adoption, so its long-term maintenance is uncertain.
58%
Total Score
83
78
90
The package has made only one release, published about 2 years and 11 months ago, with no releases in the last 12 months. That is a significant maintenance concern for a Laravel integration.
There were no commits and no active maintainers in the last three months. This is the strongest concern because it suggests the project is currently unattended.
The repository has zero stars, forks, and watchers. Popularity is only supporting evidence, but these values provide no external adoption signal to offset the limited release history.
The repository uses Composer, but no security scanning tools were detected. The build tooling is appropriate, while the missing scanning is a modest transparency gap rather than evidence of unsafe behavior.
The linked repository is not archived, although its last push was about 2 years and 11 months ago. The active status is positive, but the age of the last push reinforces the maintenance concern.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
illuminate/auth Version ^10.0 | — | — |
illuminate/container Version ^10.0 | — | — |
illuminate/contracts Version ^10.0 | — | — |
mongodb/laravel-mongodb Version ^4.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.