The README and tests help integration, and the package is not deprecated or archived. One maintainer, minimal repository adoption, and no security scanning leave limited visible support for a package this old.
42%
Total Score
50
78
83
Only one registry account has publish access. That is a thin publishing base and increases continuity risk, with no organizational backing shown to compensate for it.
The package has only one release, published about 9 years ago, with no releases in the last 12 months. This is strong evidence of abandonment risk for a dependency.
There were no commits and no active maintainers during the last 3 months, consistent with the roughly 9-year release gap and reinforcing abandonment risk.
The repository has 3 stars, 0 forks, and 1 watcher. Popularity is only supporting evidence, but these counts provide little external evidence of ongoing adoption or support.
The repository uses Composer, but reports no security scanning tools. The missing scanning is a hygiene gap rather than proof of an unsafe release.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
illuminate/config Version 5.* | — | — |
illuminate/events Version 5.* | — | — |
illuminate/support Version 5.* | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.