The MIT license, README, release notes, and matching repository make the package transparent to inspect. Its small codebase and lack of install scripts reduce friction, but the project shows no ongoing maintenance or security-policy support.
10%
Total Score
0
50
75
Packagist marks the entire package as abandoned, with no replacement provided. This is a direct adoption risk because future fixes and support are not signaled.
The package has only four releases and none in the last 12 months; its latest release was published in January 2020. This strongly indicates abandonment rather than a stable current cadence.
There were zero commits and zero active maintainers in the last three months, consistent with the archived repository and offering no evidence of ongoing maintenance.
The linked repository is archived and was last pushed in January 2020, so it is no longer maintained through the observed source project.
The repository uses Composer build tooling, which fits the package ecosystem, but it has no security-scanning tools. This is a minor hygiene gap alongside the stronger maintenance concerns.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
illuminate/http Version ~5.7|~5.8|^6.0 | — | — |
illuminate/console Version ~5.7|~5.8|^6.0 | — | — |
illuminate/support Version ~5.7|~5.8|^6.0 | — | — |
illuminate/database Version ~5.7|~5.8|^6.0 | — | — |
illuminate/contracts Version ~5.7|~5.8|^6.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.