Its release history is thin and the project has had no commits or active maintainers for about nine years. A security policy is also absent, though the package is licensed, documented, tested, and not archived.
38%
Total Score
50
75
75
Only two releases were published, both in January 2017, with no releases in the following nine years. This is strong evidence of abandonment for a payment API library.
There were zero commits and zero active maintainers in the last three months, consistent with a project that has been inactive for about nine years.
The repository has no security policy. For a library handling payment transactions, this reduces transparency around vulnerability reporting and maintenance responsibility.
The assessed release is version 0.0.2 and the package has never reached a stable major version. That increases compatibility and maturity risk, especially alongside its long inactivity.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
sabre/xml Version ^2.0 | — | — |
symfony/yaml Version ^3.2 | — | — |
guzzlehttp/guzzle Version ^6.2 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.