Tests, documentation, and organizational backing are solid. No security policy or automated security scanning is present, so ongoing maintenance and security practice remain less transparent.
65%
Total Score
75
100
79
75
This package is brand new, with one release and no established release cadence, so maintenance reliability is unproven rather than demonstrated.
There are no commits or active maintainers in the previous three months, but the repository and release are newly created, making this a limited maintenance-history concern rather than evidence of collapse.
Composer build tooling is present, but no security scanning tools were detected, leaving security-maintenance practices less visible.
The repository has no security policy, which reduces transparency about how vulnerabilities should be reported and handled.
The release is not marked prerelease, but it remains on the 0.x major line, which signals a less mature compatibility commitment.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
illuminate/http Version ^13.0 | — | — |
guzzlehttp/guzzle Version ^7.8 || ^8.0 | — | — |
illuminate/support Version ^13.0 | — | — |
illuminate/contracts Version ^13.0 | — | — |
webx-ui/module-catalog Version ^0.56.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.