The package is clearly structured and documented for consumers, with a declared MIT license and no install-time scripts. Its maintenance record is thin: all five releases arrived within minutes on one day, followed by no commits in three months, and the repository has no tests or security scanning.
58%
Total Score
50
79
50
All five releases were published within roughly two minutes, and there has been no later release during the package's 284-day lifetime. This looks like an immature release history rather than sustained maintenance.
There were zero commits and zero active maintainers in the last three months. For a package that is only about 284 days old, this is a meaningful maintenance and abandonment concern.
Composer build tooling is present, but no security scanning tools were detected. The missing scanning is a hygiene gap rather than evidence that the package is unsafe.
The repository has no security policy. This weakens vulnerability-reporting transparency, though it is a moderate maturity concern rather than a severe dependency risk.
Version v0.1.5 is not a stable major release, although it is not marked as a prerelease. The pre-1.0 status limits maturity confidence but is not disqualifying by itself.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
illuminate/view Version ^10.0 | — | — |
illuminate/support Version ^10.0 | — | — |
illuminate/filesystem Version ^10.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.