The MIT license, clear README, matching repository, and lightweight dependencies support adoption. A missing security policy leaves less documented guidance for reporting issues.
62%
Total Score
50
100
94
83
One registry maintainer is consistent with a small, user-owned project, but it also indicates a thin publishing base if that individual becomes unavailable.
The package is backed by a user-owned repository rather than an organization, so there is no visible organizational continuity beyond the individual maintainer.
This is the only release, published about 8 months ago, so there is little history demonstrating sustained maintenance or compatibility work.
There were zero commits and zero active maintainers in the last three months, a concrete sign that maintenance may have paused after the initial release.
The repository has no SECURITY.md or equivalent policy, leaving vulnerability reporting and response expectations undocumented.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
illuminate/http Version ^11.0|^12.0 | — | — |
illuminate/support Version ^11.0|^12.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.