A complete README, MIT licensing, tests, and a lean dependency set make the package easy to inspect and integrate. The missing security policy and very limited project history leave maintenance and response capacity unproven.
65%
Total Score
67
100
88
83
One registry maintainer is consistent with an individually owned project, but it also indicates a thin publishing base with no demonstrated continuity yet.
The package was first released today and has only two releases, about 23 minutes apart. This shows active initial publishing but provides no evidence of sustained maintenance yet.
There were no commits or active maintainers in the past three months. Because the repository was created and released today, this is more a lack of maintenance history than proof of abandonment, but it limits confidence.
The repository uses Make and Composer, showing basic build tooling, but it has no security scanning tools. That is a modest transparency and maintenance gap for a package handling payments.
The repository has no security policy, leaving no documented process for reporting or handling vulnerabilities in payment-related code.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
illuminate/support Version ^9.0|^10.0|^11.0 | — | — |
braintree/braintree_php Version ^6.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.