The repository includes tests, a changelog, a clear README, and matching MIT licensing. Security scanning is absent, and the project is too new to establish a dependable maintenance record.
64%
Total Score
100
88
50
This is the first release, published today, so there is no track record for maintenance or release reliability yet. Its age makes the lack of historical activity inconclusive rather than evidence of abandonment.
Composer build tooling is present, but no security-scanning tool was detected. That is a transparency and hygiene gap, though not a severe risk by itself.
The single workflow was fully analyzed with no dangerous triggers, untrusted checkouts, or audit findings, but all 5 action references are unpinned. The missing top-level permissions block is acceptable on its own, while unpinned actions add a supply-chain hygiene concern.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
illuminate/log Version ^12.0|^13.0 | — | — |
illuminate/http Version ^12.0|^13.0 | — | — |
monolog/monolog Version ^3.0 | — | — |
illuminate/queue Version ^12.0|^13.0 | — | — |
illuminate/support Version ^12.0|^13.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.