Tests, clear documentation, and an MIT license make the code easier to evaluate. There is little evidence of current support, and no repository security policy or scanning is provided.
40%
Total Score
0
100
69
75
This is the package’s only release, published about 6 years ago, with no releases in the last 12 months. That is strong evidence of abandonment risk for a payment integration.
There were no commits and no active maintainers in the last 3 months. Combined with the single-release history, this materially increases the risk that defects and platform changes will go unsupported.
The repository has zero stars and forks and only one watcher. Popularity is not required for health, but these counters provide no supporting evidence of community adoption or maintenance capacity.
Composer build tooling is present, but no security scanning tools were detected. For a payment package, the absence of automated security tooling is a meaningful hygiene weakness.
The repository is not archived, which is a positive sign, but its last push was about 6 years ago and therefore does not show active maintenance.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
guzzlehttp/guzzle Version ^6.3 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.